CVE-2022-27513

Severity CVSS v4.0:
Pending analysis
Type:
CWE-345 Insufficient Verification of Data Authenticity
Publication date:
08/11/2022
Last modified:
18/10/2023

Description

Remote desktop takeover via phishing <br />

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:citrix:gateway:*:*:*:*:*:*:*:* 12.1 (including) 12.1-65.21 (excluding)
cpe:2.3:a:citrix:gateway:*:*:*:*:*:*:*:* 13.0 (including) 13.0-88.12 (excluding)
cpe:2.3:a:citrix:gateway:*:*:*:*:*:*:*:* 13.1 (including) 13.1-33.41 (excluding)
cpe:2.3:o:citrix:application_delivery_controller_firmware:*:*:*:*:-:*:*:* 12.1 (including) 12.1-65.21 (excluding)
cpe:2.3:o:citrix:application_delivery_controller_firmware:*:*:*:*:-:*:*:* 13.0 (including) 13.0-88.12 (excluding)
cpe:2.3:o:citrix:application_delivery_controller_firmware:*:*:*:*:-:*:*:* 13.1 (including) 13.1-33.47 (excluding)
cpe:2.3:h:citrix:application_delivery_controller:-:*:*:*:*:*:*:*
cpe:2.3:o:citrix:application_delivery_controller_firmware:*:*:*:*:fips:*:*:* 12.1 (including) 12.1-55.289 (excluding)
cpe:2.3:o:citrix:application_delivery_controller_firmware:*:*:*:*:ndcpp:*:*:* 12.1 (including) 12.1-55.289 (excluding)
cpe:2.3:h:citrix:application_delivery_controller:-:*:*:*:*:*:*:*