CVE-2018-17445
- EPSS 4.52%
- Published 23.10.2018 21:30:53
- Last modified 21.11.2024 03:54:25
A Command Injection issue was discovered in Citrix SD-WAN 10.1.0 and NetScaler SD-WAN 9.3.x before 9.3.6 and 10.0.x before 10.0.4.
CVE-2018-17446
- EPSS 0.5%
- Published 23.10.2018 21:30:53
- Last modified 21.11.2024 03:54:26
A SQL Injection issue was discovered in Citrix SD-WAN 10.1.0 and NetScaler SD-WAN 9.3.x before 9.3.6 and 10.0.x before 10.0.4.
CVE-2018-17447
- EPSS 0.34%
- Published 23.10.2018 21:30:53
- Last modified 21.11.2024 03:54:26
An Information Exposure Through Log Files issue was discovered in Citrix SD-WAN 10.1.0 and NetScaler SD-WAN 9.3.x before 9.3.6 and 10.0.x before 10.0.4.
CVE-2018-17448
- EPSS 0.61%
- Published 23.10.2018 21:30:53
- Last modified 21.11.2024 03:54:26
An Incorrect Access Control issue was discovered in Citrix SD-WAN 10.1.0 and NetScaler SD-WAN 9.3.x before 9.3.6 and 10.0.x before 10.0.4.
CVE-2018-5314
- EPSS 3.31%
- Published 01.03.2018 17:29:00
- Last modified 21.11.2024 04:08:34
Command injection vulnerability in Citrix NetScaler ADC and NetScaler Gateway 11.0 before build 70.16, 11.1 before build 55.13, and 12.0 before build 53.13; and the NetScaler Load Balancing instance distributed with NetScaler SD-WAN/CloudBridge 4000,...
- EPSS 88.43%
- Published 20.07.2017 04:29:00
- Last modified 20.04.2025 01:37:25
Citrix NetScaler SD-WAN devices through v9.1.2.26.561201 allow remote attackers to execute arbitrary shell commands as root via a CGISESSID cookie. On CloudBridge (the former name of NetScaler SD-WAN) devices, the cookie name was CAKEPHP rather than ...