4.9
CVE-2014-4700
- EPSS 0.61%
- Veröffentlicht 11.07.2014 14:55:04
- Zuletzt bearbeitet 06.05.2026 22:30:45
- Erkennungen
Citrix XenDesktop 7.x, 5.x, and 4.x, when pooled random desktop groups is enabled and ShutdownDesktopsAfterUse is disabled, allows local guest users to gain access to another user's desktop via unspecified vectors.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Citrix ≫ Xendesktop Version >= 5.0 <= 5.6
Citrix ≫ Xendesktop Version >= 7.0 <= 7.11
Citrix ≫ Xendesktop Version 4.0
Citrix ≫ Xendesktop Version 4.0 Update fp1
Citrix ≫ Xendesktop Version 4.0 Update fp2
Citrix ≫ Xendesktop Version 5.6 Update fp1
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.61% | 0.443 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 4.9 | 4.4 | 6.4 |
AV:A/AC:M/Au:S/C:P/I:P/A:P
|
http://secunia.com/advisories/59889
http://support.citrix.com/article/CTX139591
http://www.securityfocus.com/bid/68530
http://www.securitytracker.com/id/1030566
https://exchange.xforce.ibmcloud.com/vulnerabilities/94460