7.5

CVE-2009-2453

Citrix XenApp (formerly Presentation Server) 4.5 Hotfix Rollup Pack 3 does not apply an access policy when it is defined with the Access Gateway Advanced Edition filters, which allows attackers to bypass intended access restrictions via unknown vectors.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Citrix ≫ Presentation Server Version 4.5 Update - Edition se
Citrix ≫ Presentation Server Version 4.5 Update - Edition windows_server_2003
Citrix ≫ Presentation Server Version 4.5 Update - Edition windows_server_2003_x64
Citrix ≫ Presentation Server Version 4.5 Update fp1
Citrix ≫ Xenapp Version 4.5 Update fp3
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 1.43% 0.695
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 7.5 10 6.4
AV:N/AC:L/Au:N/C:P/I:P/A:P
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://osvdb.org/53900
http://secunia.com/advisories/34865
Vendor Advisory
http://support.citrix.com/article/CTX118792
Patch
Vendor Advisory
http://www.securityfocus.com/bid/34691
Patch
http://www.securitytracker.com/id?1022114
Patch
http://www.vupen.com/english/advisories/2009/1154
Patch
Vendor Advisory