Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2024-2049


Server-Side Request Forgery (SSRF) in Citrix SD-WAN Standard/Premium Editions on or after 11.4.0 and before 11.4.4.46 allows an attacker to disclose limited information from the appliance via Access to management IP.


Published

2024-03-12T13:15:49.807

Last Modified

2025-07-25T15:36:48.663

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 6.5 (MEDIUM)

Weaknesses
  • Type: Secondary
    CWE-918

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System citrix sd-wan_1000_firmware < 11.4.4.46 Yes
Hardware citrix sd-wan_1000 - No
Operating System citrix sd-wan_110_firmware < 11.4.4.46 Yes
Hardware citrix sd-wan_110 - No
Operating System citrix sd-wan_1100_firmware < 11.4.4.46 Yes
Hardware citrix sd-wan_1100 - No
Operating System citrix sd-wan_2000_firmware < 11.4.4.46 Yes
Hardware citrix sd-wan_2000 - No
Operating System citrix sd-wan_210_firmware < 11.4.4.46 Yes
Hardware citrix sd-wan_210 - No
Operating System citrix sd-wan_2100_firmware < 11.4.4.46 Yes
Hardware citrix sd-wan_2100 - No
Operating System citrix sd-wan_400_firmware < 11.4.4.46 Yes
Hardware citrix sd-wan_400 - No
Operating System citrix sd-wan_4000_firmware < 11.4.4.46 Yes
Hardware citrix sd-wan_4000 - No
Operating System citrix sd-wan_410_firmware < 11.4.4.46 Yes
Hardware citrix sd-wan_410 - No
Operating System citrix sd-wan_4100_firmware < 11.4.4.46 Yes
Hardware citrix sd-wan_4100 - No
Operating System citrix sd-wan_5100_firmware < 11.4.4.46 Yes
Hardware citrix sd-wan_5100 - No
Operating System citrix sd-wan_6100_firmware < 11.4.4.46 Yes
Hardware citrix sd-wan_6100 - No
Operating System citrix sd-wan_1000_firmware < 11.4.4.46 Yes
Hardware citrix sd-wan_1000 - No
Operating System citrix sd-wan_1100_firmware < 11.4.4.46 Yes
Hardware citrix sd-wan_1100 - No
Operating System citrix sd-wan_2000_firmware < 11.4.4.46 Yes
Hardware citrix sd-wan_2000 - No
Operating System citrix sd-wan_2100_firmware < 11.4.4.46 Yes
Hardware citrix sd-wan_2100 - No
Operating System citrix sd-wan_6100_firmware < 11.4.4.46 Yes
Hardware citrix sd-wan_6100 - No
Operating System citrix sd-wan_5100_firmware < 11.4.4.46 Yes
Hardware citrix sd-wan_5100 - No

References