CVE-2019-18177

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
26/12/2022
Last modified:
05/01/2023

Description

In certain Citrix products, information disclosure can be achieved by an authenticated VPN user when there is a configured SSL VPN endpoint. This affects Citrix ADC and Citrix Gateway 13.0-58.30 and later releases before the CTX276688 update.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:citrix:application_delivery_controller_firmware:*:*:*:*:*:*:*:* 13.0-58.30 (excluding)
cpe:2.3:h:citrix:application_delivery_controller:-:*:*:*:*:*:*:*
cpe:2.3:a:citrix:gateway:*:*:*:*:*:*:*:* 13.0-58.30 (excluding)