7.5
CVE-2016-4810
- EPSS 0.22%
- Published 01.06.2016 22:59:05
- Last modified 12.04.2025 10:46:40
- Source cve@mitre.org
- Teams watchlist Login
- Open Login
Citrix Studio before 7.6.1000, Citrix XenDesktop 7.x before 7.6 LTSR Cumulative Update 1 (CU1), and Citrix XenApp 7.5 and 7.6 allow attackers to set Access Policy rules on the XenDesktop Delivery Controller via unspecified vectors.
Data is provided by the National Vulnerability Database (NVD)
Citrix ≫ Xendesktop Version7.0
Citrix ≫ Xendesktop Version7.1
Citrix ≫ Xendesktop Version7.5
Citrix ≫ Xendesktop Version7.6
Citrix ≫ Xendesktop Version7.6 Updatefp1
Citrix ≫ Xendesktop Version7.6 Updatefp2
Citrix ≫ Xendesktop Version7.6 Updatefp3
Citrix ≫ Xendesktop Version7.6 Updateltsr
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Type | Source | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.22% | 0.414 |
Source | Base Score | Exploit Score | Impact Score | Vector string |
---|---|---|---|---|
nvd@nist.gov | 7.5 | 3.9 | 3.6 |
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
|
nvd@nist.gov | 5 | 10 | 2.9 |
AV:N/AC:L/Au:N/C:N/I:P/A:N
|
CWE-284 Improper Access Control
The product does not restrict or incorrectly restricts access to a resource from an unauthorized actor.