📦

application_delivery_controller

Vendor: edgenexus

Actively Exploited 2 CISA KEV List
PoC / Exploits 2 Code Available
Total RCEs 3 Remote Access
Total CVEs 2 Total Indexed
Avg. EPSS 8.73% Exploit Prob.
Latest CVE CVE-2023-24488 Jul 10

Security Vulnerability Index

Page 1 / 1
6.1 CVSS

Cross site scripting vulnerability in Citrix ADC and Citrix Gateway  in allows and attacker to perform cross site scripting

EPSS: 80.91%
6.3 CVSS

Arbitrary file read in Citrix ADC and Citrix Gateway 

EPSS: 1.07%
7.5 CVSS

Unauthenticated denial of service

EPSS: 1.02%
6.5 CVSS

Authenticated denial of service

EPSS: 0.99%
8.8 CVSS

A Cross-Site Request Forgery (CSRF) in the management portal of JetNexus/EdgeNexus ADC 4.2.8 allows attackers to escalate privileges and execute arbitrary code via unspecified vectors.

EPSS: 0.42%
8.8 CVSS

The management portal component of JetNexus/EdgeNexus ADC 4.2.8 was discovered to contain a command injection vulnerability. This vulnerability allows authenticated attackers to execute arbitrary commands through a specially crafted payload. This vulnerability can also be exploited from an unauthenticated context via unspecified vectors

EPSS: 3.55%
6.5 CVSS

In certain Citrix products, information disclosure can be achieved by an authenticated VPN user when there is a configured SSL VPN endpoint. This affects Citrix ADC and Citrix Gateway 13.0-58.30 and later releases before the CTX276688 update.

EPSS: 0.58%
9.8 CVSS
CVE-2022-27518
Exploit Found

Unauthenticated remote arbitrary code execution

EPSS: 6.93%
5.3 CVSS

User login brute force protection functionality bypass

EPSS: 0.60%
8.3 CVSS

Remote desktop takeover via phishing

EPSS: 0.27%