Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2018-7218


The AppFirewall functionality in Citrix NetScaler Application Delivery Controller and NetScaler Gateway 10.5 before Build 68.7, 11.0 before Build 71.24, 11.1 before Build 58.13, and 12.0 before Build 57.24 allows remote attackers to execute arbitrary code via unspecified vectors.


Published

2018-05-17T19:29:00.790

Last Modified

2024-11-21T04:11:48.953

Status

Modified

Source

[email protected]

Severity

CVSSv3.0: 9.8 (CRITICAL)

CVSSv2 Vector

AV:N/AC:L/Au:N/C:C/I:C/A:C

  • Access Vector: NETWORK
  • Access Complexity: LOW
  • Authentication: NONE
  • Confidentiality Impact: COMPLETE
  • Integrity Impact: COMPLETE
  • Availability Impact: COMPLETE
Exploitability Score

10.0

Impact Score

10.0

Weaknesses
  • Type: Primary
    NVD-CWE-noinfo

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System citrix application_delivery_controller_firmware 10.5 Yes
Operating System citrix application_delivery_controller_firmware 11.0 Yes
Operating System citrix application_delivery_controller_firmware 11.1 Yes
Operating System citrix application_delivery_controller_firmware 12.0 Yes
Operating System citrix netscaler_gateway_firmware 10.5 Yes
Operating System citrix netscaler_gateway_firmware 11.0 Yes
Operating System citrix netscaler_gateway_firmware 11.1 Yes
Operating System citrix netscaler_gateway_firmware 12.0 Yes

References