In certain Citrix products, information disclosure can be achieved by an authenticated VPN user when there is a configured SSL VPN endpoint. This affects Citrix ADC and Citrix Gateway 13.0-58.30 and later releases before the CTX276688 update.
2022-12-26T21:15:10.380
2025-04-14T18:15:18.447
Modified
CVSSv3.1: 6.5 (MEDIUM)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | citrix | application_delivery_controller_firmware | < 13.0-58.30 | Yes |
Hardware | citrix | application_delivery_controller | - | No |
Application | citrix | gateway | < 13.0-58.30 | Yes |