Citrix XenDesktop 7.x, 5.x, and 4.x, when pooled random desktop groups is enabled and ShutdownDesktopsAfterUse is disabled, allows local guest users to gain access to another user's desktop via unspecified vectors.
2014-07-11T14:55:04.650
2025-04-12T10:46:40.837
Deferred
CVSSv2: 4.9 (MEDIUM)
AV:A/AC:M/Au:S/C:P/I:P/A:P
4.4
6.4
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | citrix | xendesktop | ≤ 5.6 | Yes |
Application | citrix | xendesktop | ≤ 7.11 | Yes |
Application | citrix | xendesktop | 4.0 | Yes |
Application | citrix | xendesktop | 4.0 | Yes |
Application | citrix | xendesktop | 4.0 | Yes |
Application | citrix | xendesktop | 5.6 | Yes |