CVE-2010-4566: Critical severity Citrix Access Gateway vulnerability
The web authentication form in the NT4 authentication component in Citrix Access Gateway Enterprise Edition 9.2-49.8 and earlier, and the NTLM authentication component in Access Gateway Standard and Advanced Editions before Access Gateway 5.0, allows attackers to execute arbitrary commands via shell metacharacters in the password field.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2010-4566?
CVE-2010-4566 is categorized as a critical vulnerability due to its potential for arbitrary command execution.
How do I fix CVE-2010-4566?
To mitigate CVE-2010-4566, it is recommended to upgrade to Citrix Access Gateway version 5.0 or later.
What components are affected by CVE-2010-4566?
CVE-2010-4566 affects the NT4 authentication component and NTLM authentication component of various Citrix Access Gateway versions.
Can CVE-2010-4566 be exploited remotely?
Yes, CVE-2010-4566 can be exploited remotely which increases its risk to affected systems.
What types of systems are at risk from CVE-2010-4566?
Systems running Citrix Access Gateway Enterprise Edition 9.2-49.8 and earlier, and Standard and Advanced Editions before 5.0 are at risk from CVE-2010-4566.