Workspace app
CVEs (13)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2019-11634 | 0.20 | — | 0.31 | KEV | May 22, 2019 | Citrix Workspace App before 1904 for Windows has Incorrect Access Control. | ||
| CVE-2025-4879 | 0.00 | — | 0.00 | Jun 17, 2025 | Local Privilege escalation allows a low-privileged user to gain SYSTEM privileges in Citrix Workspace app for Windows | |||
| CVE-2024-7890 | 0.00 | — | 0.00 | Sep 11, 2024 | Local privilege escalation allows a low-privileged user to gain SYSTEM privileges in Citrix Workspace app for Windows | |||
| CVE-2024-7889 | 0.00 | — | 0.00 | Sep 11, 2024 | Local privilege escalation allows a low-privileged user to gain SYSTEM privileges in Citrix Workspace app for Windows | |||
| CVE-2024-42423 | 0.00 | — | 0.00 | Sep 10, 2024 | Citrix Workspace App version 23.9.0.24.4 on Dell ThinOS 2311 contains an Incorrect Authorization vulnerability when Citrix CEB is enabled for WebLogin. A local unauthenticated user with low privileges may potentially exploit this vulnerability to bypass existing controls and… | |||
| CVE-2024-6149 | 0.00 | — | 0.00 | Jul 10, 2024 | Redirection of users to a vulnerable URL in Citrix Workspace app for HTML5 | |||
| CVE-2024-6148 | 0.00 | — | 0.00 | Jul 10, 2024 | Bypass of GACS Policy Configuration settings in Citrix Workspace app for HTML5 | |||
| CVE-2024-6286 | 0.00 | — | 0.00 | Jul 10, 2024 | Local Privilege escalation allows a low-privileged user to gain SYSTEM privileges in Citrix Workspace app for Windows | |||
| CVE-2023-24486 | 0.00 | — | 0.00 | Jul 10, 2023 | A vulnerability has been identified in Citrix Workspace app for Linux that, if exploited, may result in a malicious local user being able to gain access to the Citrix Virtual Apps and Desktops session of another user who is using the same computer from which the ICA session is… | |||
| CVE-2023-24485 | 0.00 | — | 0.00 | Feb 16, 2023 | Vulnerabilities have been identified that, collectively, allow a standard Windows user to perform operations as SYSTEM on the computer running Citrix Workspace app. | |||
| CVE-2022-21825 | 0.00 | — | 0.00 | Feb 9, 2022 | An Improper Access Control vulnerability exists in Citrix Workspace App for Linux 2012 - 2111 with App Protection installed that can allow an attacker to perform local privilege escalation. | |||
| CVE-2020-13884 | 0.00 | — | 0.00 | Jun 8, 2020 | Citrix Workspace App before 1912 on Windows has Insecure Permissions and an Unquoted Path vulnerability which allows local users to gain privileges during the uninstallation of the application. | |||
| CVE-2020-13885 | 0.00 | — | 0.00 | Jun 8, 2020 | Citrix Workspace App before 1912 on Windows has Insecure Permissions which allows local users to gain privileges during the uninstallation of the application. |
- risk 0.20cvss —epss 0.31
Citrix Workspace App before 1904 for Windows has Incorrect Access Control.
- CVE-2025-4879Jun 17, 2025risk 0.00cvss —epss 0.00
Local Privilege escalation allows a low-privileged user to gain SYSTEM privileges in Citrix Workspace app for Windows
- CVE-2024-7890Sep 11, 2024risk 0.00cvss —epss 0.00
Local privilege escalation allows a low-privileged user to gain SYSTEM privileges in Citrix Workspace app for Windows
- CVE-2024-7889Sep 11, 2024risk 0.00cvss —epss 0.00
Local privilege escalation allows a low-privileged user to gain SYSTEM privileges in Citrix Workspace app for Windows
- CVE-2024-42423Sep 10, 2024risk 0.00cvss —epss 0.00
Citrix Workspace App version 23.9.0.24.4 on Dell ThinOS 2311 contains an Incorrect Authorization vulnerability when Citrix CEB is enabled for WebLogin. A local unauthenticated user with low privileges may potentially exploit this vulnerability to bypass existing controls and…
- CVE-2024-6149Jul 10, 2024risk 0.00cvss —epss 0.00
Redirection of users to a vulnerable URL in Citrix Workspace app for HTML5
- CVE-2024-6148Jul 10, 2024risk 0.00cvss —epss 0.00
Bypass of GACS Policy Configuration settings in Citrix Workspace app for HTML5
- CVE-2024-6286Jul 10, 2024risk 0.00cvss —epss 0.00
Local Privilege escalation allows a low-privileged user to gain SYSTEM privileges in Citrix Workspace app for Windows
- CVE-2023-24486Jul 10, 2023risk 0.00cvss —epss 0.00
A vulnerability has been identified in Citrix Workspace app for Linux that, if exploited, may result in a malicious local user being able to gain access to the Citrix Virtual Apps and Desktops session of another user who is using the same computer from which the ICA session is…
- CVE-2023-24485Feb 16, 2023risk 0.00cvss —epss 0.00
Vulnerabilities have been identified that, collectively, allow a standard Windows user to perform operations as SYSTEM on the computer running Citrix Workspace app.
- CVE-2022-21825Feb 9, 2022risk 0.00cvss —epss 0.00
An Improper Access Control vulnerability exists in Citrix Workspace App for Linux 2012 - 2111 with App Protection installed that can allow an attacker to perform local privilege escalation.
- CVE-2020-13884Jun 8, 2020risk 0.00cvss —epss 0.00
Citrix Workspace App before 1912 on Windows has Insecure Permissions and an Unquoted Path vulnerability which allows local users to gain privileges during the uninstallation of the application.
- CVE-2020-13885Jun 8, 2020risk 0.00cvss —epss 0.00
Citrix Workspace App before 1912 on Windows has Insecure Permissions which allows local users to gain privileges during the uninstallation of the application.