VYPR

Command Center

Sign in to watch

by Citrix Systems

CVEs (2)

CVESevRiskCVSSEPSSKEVPublishedDescription
CVE-2015-26820.060.35Mar 26, 2015Citrix Command Center before 5.1 Build 35.4 and 5.2 before Build 42.7 allows remote attackers to obtain credentials via a direct request to conf/securitydbData.xml.
CVE-2015-26830.000.03Mar 26, 2015Citrix Command Center before 5.1 Build 35.4 and 5.2 before Build 42.7 does not properly restrict access to the Advent Java Management Extensions (JMX) Servlet, which allows remote attackers to execute arbitrary code via unspecified vectors to servlets/Jmx_dynamic.