Citrix Session Recording
CVEs (3)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2024-8069 | 0.16 | — | 0.15 | KEV | Nov 12, 2024 | Limited remote code execution with privilege of a NetworkService Account access in Citrix Session Recording if the attacker is an authenticated user on the same intranet as the session recording server | ||
| CVE-2024-8068 | 0.13 | — | 0.01 | KEV | Nov 12, 2024 | Privilege escalation to NetworkService Account access in Citrix Session Recording when an attacker is an authenticated user in the same Windows Active Directory domain as the session recording server domain | ||
| CVE-2023-6184 | 0.02 | — | 0.47 | Jan 18, 2024 | Cross SiteScripting vulnerability in Citrix Session Recording allows attacker to perform Cross Site Scripting |
- risk 0.16cvss —epss 0.15
Limited remote code execution with privilege of a NetworkService Account access in Citrix Session Recording if the attacker is an authenticated user on the same intranet as the session recording server
- risk 0.13cvss —epss 0.01
Privilege escalation to NetworkService Account access in Citrix Session Recording when an attacker is an authenticated user in the same Windows Active Directory domain as the session recording server domain
- CVE-2023-6184Jan 18, 2024risk 0.02cvss —epss 0.47
Cross SiteScripting vulnerability in Citrix Session Recording allows attacker to perform Cross Site Scripting