Cross site scripting vulnerability in Citrix ADC and Citrix Gateway in allows and attacker to perform cross site scripting
📦
gateway
Vendor: citrix
Actively Exploited
2
CISA KEV List
PoC / Exploits
2
Code Available
Total RCEs
1
Remote Access
Total CVEs
35
Total Indexed
Avg. EPSS
9.19%
Exploit Prob.
Security Vulnerability Index
Page 1 / 4
6.1
CVSS
Severity: MEDIUM
6.3
CVSS
7.5
CVSS
6.5
CVSS
6.5
CVSS
In certain Citrix products, information disclosure can be achieved by an authenticated VPN user when there is a configured SSL VPN endpoint. This affects Citrix ADC and Citrix Gateway 13.0-58.30 and later releases before the CTX276688 update.
Severity: MEDIUM
9.8
CVSS
CVE-2022-27518
Exploit Found
Unauthenticated remote arbitrary code execution
Severity: CRITICAL
5.3
CVSS
8.3
CVSS
9.8
CVSS
6.1
CVSS