CVE-2023-24491

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
11/07/2023
Last modified:
19/07/2023

Description

<br /> A vulnerability has been discovered in the Citrix Secure Access client for Windows<br /> <br /> <br /> <br /> which, if exploited, could allow an attacker with access to an endpoint with Standard User Account that has the vulnerable client installed to escalate their local privileges to that of NT AUTHORITY\SYSTEM.<br />

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:citrix:secure_access_client:*:*:*:*:*:*:*:* 23.5.1.3 (excluding)
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*