First published: Tue Jul 14 2009(Updated: )
Cross-site scripting (XSS) vulnerability in Citrix Web Interface 4.6, 5.0, and 5.0.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Citrix Web Interface | =5.0.1 | |
Citrix Web Interface | =4.6 | |
Citrix Web Interface | =5.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2009-2454 has a medium level of severity due to its potential for cross-site scripting attacks.
To fix CVE-2009-2454, upgrade to a patched version of Citrix Web Interface or apply the recommended security updates provided by Citrix.
CVE-2009-2454 affects Citrix Web Interface versions 4.6, 5.0, and 5.0.1.
CVE-2009-2454 is a cross-site scripting (XSS) vulnerability that allows attackers to inject malicious scripts.
By exploiting CVE-2009-2454, an attacker could potentially execute arbitrary web scripts or HTML in the context of a user's session.