Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2019-18177


In certain Citrix products, information disclosure can be achieved by an authenticated VPN user when there is a configured SSL VPN endpoint. This affects Citrix ADC and Citrix Gateway 13.0-58.30 and later releases before the CTX276688 update.


Published

2022-12-26T21:15:10.380

Last Modified

2025-04-14T18:15:18.447

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 6.5 (MEDIUM)

Weaknesses
  • Type: Primary
    NVD-CWE-noinfo
  • Type: Secondary
    CWE-200

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System citrix application_delivery_controller_firmware < 13.0-58.30 Yes
Hardware citrix application_delivery_controller - No
Application citrix gateway < 13.0-58.30 Yes

References