CVE-2020-8187

Severity CVSS v4.0:
Pending analysis
Type:
CWE-20 Input Validation
Publication date:
10/07/2020
Last modified:
13/07/2020

Description

Improper input validation in Citrix ADC and Citrix Gateway versions before 11.1-63.9 and 12.0-62.10 allows unauthenticated users to perform a denial of service attack.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:citrix:application_delivery_controller_firmware:*:*:*:*:*:*:*:* 11.1 (including) 11.1-63.9 (excluding)
cpe:2.3:o:citrix:application_delivery_controller_firmware:*:*:*:*:*:*:*:* 12.0 (including) 12.0-62.10 (excluding)
cpe:2.3:h:citrix:application_delivery_controller:-:*:*:*:*:*:*:*
cpe:2.3:o:citrix:netscaler_gateway_firmware:*:*:*:*:*:*:*:* 11.1 (including) 11.1-63.9 (excluding)
cpe:2.3:o:citrix:netscaler_gateway_firmware:*:*:*:*:*:*:*:* 12.0 (including) 12.0-62.10 (excluding)
cpe:2.3:h:citrix:netscaler_gateway:-:*:*:*:*:*:*:*


References to Advisories, Solutions, and Tools