CVE-2021-44519
- EPSS 0.8%
- Published 19.04.2022 16:17:09
- Last modified 21.11.2024 06:31:08
In Citrix XenMobile Server through 10.12 RP9, there is an Authenticated Directory Traversal vulnerability, leading to remote code execution.
- EPSS 2.46%
- Published 13.04.2022 00:15:19
- Last modified 21.11.2024 06:53:31
Citrix XenMobile Server 10.12 through RP11, 10.13 through RP7, and 10.14 through RP4 allows Command Injection.
- EPSS 5.94%
- Published 13.04.2022 00:15:19
- Last modified 21.11.2024 06:31:08
In Citrix XenMobile Server through 10.12 RP9, there is an Authenticated Command Injection vulnerability, leading to remote code execution with root privileges.
CVE-2020-8253
- EPSS 0.28%
- Published 18.09.2020 21:15:13
- Last modified 21.11.2024 05:38:35
Improper authentication in Citrix XenMobile Server 10.12 before RP2, Citrix XenMobile Server 10.11 before RP4, Citrix XenMobile Server 10.10 before RP6 and Citrix XenMobile Server before 10.9 RP5 leads to the ability to access sensitive files.
CVE-2020-8212
- EPSS 0.51%
- Published 17.08.2020 16:15:13
- Last modified 21.11.2024 05:38:30
Improper access control in Citrix XenMobile Server 10.12 before RP3, Citrix XenMobile Server 10.11 before RP6, Citrix XenMobile Server 10.10 RP6 and Citrix XenMobile Server before 10.9 RP5 allows access to privileged functionality.
CVE-2020-8211
- EPSS 0.53%
- Published 17.08.2020 16:15:13
- Last modified 21.11.2024 05:38:30
Improper input validation in Citrix XenMobile Server 10.12 before RP3, Citrix XenMobile Server 10.11 before RP6, Citrix XenMobile Server 10.10 RP6 and Citrix XenMobile Server before 10.9 RP5 allows SQL Injection.
CVE-2020-8210
- EPSS 0.31%
- Published 17.08.2020 16:15:13
- Last modified 21.11.2024 05:38:30
Insufficient protection of secrets in Citrix XenMobile Server 10.12 before RP3, Citrix XenMobile Server 10.11 before RP6, Citrix XenMobile Server 10.10 RP6 and Citrix XenMobile Server before 10.9 RP5 discloses credentials of a service account.
CVE-2020-8209
- EPSS 93.01%
- Published 17.08.2020 16:15:13
- Last modified 21.11.2024 05:38:30
Improper access control in Citrix XenMobile Server 10.12 before RP2, Citrix XenMobile Server 10.11 before RP4, Citrix XenMobile Server 10.10 before RP6 and Citrix XenMobile Server before 10.9 RP5 and leads to the ability to read arbitrary files.
CVE-2020-8208
- EPSS 0.39%
- Published 17.08.2020 16:15:13
- Last modified 21.11.2024 05:38:30
Improper input validation in Citrix XenMobile Server 10.12 before RP1, Citrix XenMobile Server 10.11 before RP4, Citrix XenMobile Server 10.11 before RP6 and Citrix XenMobile Server before 10.9 RP5 allows Cross-Site Scripting (XSS).
CVE-2018-18571
- EPSS 0.34%
- Published 05.06.2019 15:29:00
- Last modified 21.11.2024 03:56:10
An Incorrect Access Control vulnerability has been identified in Citrix XenMobile Server 10.8.0 before Rolling Patch 6 and 10.9.0 before Rolling Patch 3. An attacker can impersonate and take actions on behalf of any Mobile Application Management (MAM...