CVE
Vendors
Products
Updated
CVSS v2
CVSS v3
Temporary disruption of the ADM license service. The impact of this includes preventing new licenses from being issued or renewed by Citrix ADM.
Corruption of the system by a remote, unauthenticated user. The impact of this can include the reset of the administrator password at the next device reboot, allowing an attacker with ssh access to connect with the default administrator credentials after the device has rebooted.
Unauthorized access to Gateway user capabilities
A vulnerability was found in SourceCodester Company Website CMS and classified as critical. Affected by this issue is some unknown functionality of the file /dashboard/add-portfolio.php. The manipulation of the argument ufile leads to unrestricted upload. The attack may be launched remotely. The identifier of this vulnerability is VDB-206024.
Unauthenticated redirection to a malicious website
Unauthenticated denial of service
Authenticated denial of service
Hard-coded credentials allow administrators to access the shell via the SD-WAN CLI
Reflected cross site scripting (XSS)
Cross-site Scripting (XSS) vulnerability in Citrix StoreFront affects version 1912 before CU5 and version 3.12 before CU9
