First published: Fri May 03 2002(Updated: )
Citrix NFuse 1.6 allows remote attackers to bypass authentication and obtain sensitive information by directly calling launch.asp with invalid NFUSE_USER and NFUSE_PASSWORD parameters.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Citrix NFuse | =1.6 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2002-0301 has been classified with a high severity level due to the potential for unauthorized access and sensitive information disclosure.
To mitigate CVE-2002-0301, it is recommended to apply patches provided by Citrix for NFuse version 1.6 or upgrade to a more secure version.
CVE-2002-0301 affects users of Citrix NFuse version 1.6 who have not implemented adequate security measures.
CVE-2002-0301 enables remote attackers to bypass authentication mechanisms leading to unauthorized access.
CVE-2002-0301 allows attackers to obtain sensitive information by exploiting authentication bypass vulnerabilities.