Skip to main content

Vendor archive

citrix CVEs

Beta · best-effort

455 CVEs tagged to vendor citrix75 Critical, 170 High, 195 Medium, 15 Low, 0 Unrated.

CVE-2018-18013

Published Oct 24, 2018

* Xen Mobile through 10.8.0 includes a service listening on port 5001 within its firewall that accepts unauthenticated input. If this service is supplied with raw serialised Java…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2018-17448

Published Oct 23, 2018

An Incorrect Access Control issue was discovered in Citrix SD-WAN 10.1.0 and NetScaler SD-WAN 9.3.x before 9.3.6 and 10.0.x before 10.0.4.

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2016-9603

Published Jul 27, 2018

A heap buffer overflow flaw was found in QEMU's Cirrus CLGD 54xx VGA emulator's VNC display driver support before 2.9; the issue could occur when a VNC client attempted to update…

CVSS 5.5 · Medium

CVE-2017-2620

Published Jul 27, 2018

Quick emulator (QEMU) before 2.8 built with the Cirrus CLGD 54xx VGA Emulator support is vulnerable to an out-of-bounds access issue. The issue could occur while copying VGA data…

CVSS 5.5 · Medium

CVE-2017-2615

Published Jul 3, 2018

Quick emulator (QEMU) built with the Cirrus CLGD 54xx VGA emulator support is vulnerable to an out-of-bounds access issue. It could occur while copying VGA data via bitblt copy in…

CVSS 5.5 · Medium

CVE-2018-3665

Published Jun 21, 2018

System software utilizing Lazy FP state restore technique on systems using Intel Core-based microprocessors may potentially allow a local process to infer data from another proces…

CVSS 5.6 · Medium
evidence mentions
7
Buzz score
28.8

CVE-2018-10654

Published May 23, 2018

There is a Hazelcast Library Java Deserialization Vulnerability in Citrix XenMobile Server 10.8 before RP2 and 10.7 before RP3.

CVSS 8.1 · High
Vendor/product tagsBeta · best-effort

CVE-2018-10653

Published May 23, 2018

There is an XML External Entity (XXE) Processing Vulnerability in Citrix XenMobile Server 10.8 before RP2 and 10.7 before RP3.

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2018-10650

Published May 23, 2018

There is an Insufficient Path Validation Vulnerability in Citrix XenMobile Server 10.8 before RP2 and 10.7 before RP3.

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2018-10648

Published May 23, 2018

There are Unauthenticated File Upload Vulnerabilities in Citrix XenMobile Server 10.8 before RP2 and 10.7 before RP3.

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2018-8897

Published May 8, 2018

A statement in the System Programming Guide of the Intel 64 and IA-32 Architectures Software Developer's Manual (SDM) was mishandled in the development of some or all operating-sy…

CVSS 7.8 · High
evidence mentions
3
Buzz score
20.4
Showing 226-250 of 455 CVEsPage 10 of 19