CVE-2023-24488

Severity CVSS v4.0:
Pending analysis
Type:
CWE-79 Cross-Site Scripting (XSS)
Publication date:
10/07/2023
Last modified:
07/11/2023

Description

Cross site scripting vulnerability in Citrix ADC and Citrix Gateway  in allows and attacker to perform cross site scripting

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:citrix:gateway:*:*:*:*:*:*:*:* 12.1 (including) 12.1-65.35 (excluding)
cpe:2.3:a:citrix:gateway:*:*:*:*:*:*:*:* 13.0 (including) 13.0-90.11 (excluding)
cpe:2.3:a:citrix:gateway:*:*:*:*:*:*:*:* 13.1 (including) 13.1-45.61 (excluding)
cpe:2.3:a:citrix:application_delivery_controller:*:*:*:*:fips:*:*:* 12.1 (including) 12.1-55.296 (excluding)
cpe:2.3:a:citrix:application_delivery_controller:*:*:*:*:ndcpp:*:*:* 12.1 (including) 12.1-55.296 (excluding)
cpe:2.3:a:citrix:application_delivery_controller:*:*:*:*:-:*:*:* 12.1 (including) 12.1-65.35 (excluding)
cpe:2.3:a:citrix:application_delivery_controller:*:*:*:*:*:*:*:* 13.0 (including) 13.0-90.11 (excluding)
cpe:2.3:a:citrix:application_delivery_controller:*:*:*:*:*:*:*:* 13.1 (including) 13.1-45.61 (excluding)