CVE-2020-8258

Severity CVSS v4.0:
Pending analysis
Type:
CWE-269 Improper Privilege Management
Publication date:
14/12/2020
Last modified:
16/12/2020

Description

Improper privilege management on services run by Citrix Gateway Plug-in for Windows, versions before and including 13.0-61.48 and 12.1-58.15, allows an attacker to modify arbitrary files.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:citrix:gateway_plug-in:*:*:*:*:*:windows:*:* 12.0 (including) 12.1-58 (including)
cpe:2.3:a:citrix:gateway_plug-in:*:*:*:*:*:windows:*:* 13.0 (including) 13.0-61.48 (including)


References to Advisories, Solutions, and Tools