CVE-2024-6286

Severity CVSS v4.0:
HIGH
Type:
CWE-269 Improper Privilege Management
Publication date:
10/07/2024
Last modified:
25/07/2025

Description

Local Privilege escalation allows a low-privileged user to gain SYSTEM privileges in Citrix Workspace app for Windows

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:citrix:workspace:*:*:*:*:ltsr:windows:*:* 2203.1 (excluding)
cpe:2.3:a:citrix:workspace:*:*:*:*:-:windows:*:* 2403.1 (excluding)
cpe:2.3:a:citrix:workspace:2203.1:-:*:*:ltsr:windows:*:*
cpe:2.3:a:citrix:workspace:2203.1:cu1:*:*:ltsr:windows:*:*
cpe:2.3:a:citrix:workspace:2203.1:cu2:*:*:ltsr:windows:*:*
cpe:2.3:a:citrix:workspace:2203.1:cu3:*:*:ltsr:windows:*:*
cpe:2.3:a:citrix:workspace:2203.1:cu4:*:*:ltsr:windows:*:*
cpe:2.3:a:citrix:workspace:2203.1:cu5:*:*:ltsr:windows:*:*
cpe:2.3:a:citrix:workspace:2203.1:cu6:*:*:ltsr:windows:*:*