CVE-2014-3780
Severity CVSS v4.0:
Pending analysis
Type:
CWE-287
Authentication Issues
Publication date:
30/05/2014
Last modified:
12/04/2025
Description
Unspecified vulnerability in Citrix VDI-In-A-Box 5.3.x before 5.3.8 and 5.4.x before 5.4.4 allows remote attackers to bypass authentication via unspecified vectors, related to a Java servlet.
Impact
Base Score 2.0
7.50
Severity 2.0
HIGH
Vulnerable products and versions
CPE | From | Up to |
---|---|---|
cpe:2.3:a:citrix:vdi-in-a-box:5.3.0:*:*:*:*:*:*:* | ||
cpe:2.3:a:citrix:vdi-in-a-box:5.3.1:*:*:*:*:*:*:* | ||
cpe:2.3:a:citrix:vdi-in-a-box:5.3.2:*:*:*:*:*:*:* | ||
cpe:2.3:a:citrix:vdi-in-a-box:5.3.3:*:*:*:*:*:*:* | ||
cpe:2.3:a:citrix:vdi-in-a-box:5.3.4:*:*:*:*:*:*:* | ||
cpe:2.3:a:citrix:vdi-in-a-box:5.3.5:*:*:*:*:*:*:* | ||
cpe:2.3:a:citrix:vdi-in-a-box:5.3.6:*:*:*:*:*:*:* | ||
cpe:2.3:a:citrix:vdi-in-a-box:5.3.7:*:*:*:*:*:*:* | ||
cpe:2.3:a:citrix:vdi-in-a-box:5.4.0:*:*:*:*:*:*:* | ||
cpe:2.3:a:citrix:vdi-in-a-box:5.4.1:*:*:*:*:*:*:* | ||
cpe:2.3:a:citrix:vdi-in-a-box:5.4.2:*:*:*:*:*:*:* | ||
cpe:2.3:a:citrix:vdi-in-a-box:5.4.3:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page
References to Advisories, Solutions, and Tools
- http://secunia.com/advisories/58431
- http://support.citrix.com/article/CTX140779
- http://www.securityfocus.com/bid/67687
- http://www.securitytracker.com/id/1030305
- http://secunia.com/advisories/58431
- http://support.citrix.com/article/CTX140779
- http://www.securityfocus.com/bid/67687
- http://www.securitytracker.com/id/1030305