CVE-2012-4603: Input Validation
Citrix XenApp Online Plug-in for Windows 12.1 and earlier, and Citrix Receiver for Windows 3.2 and earlier could allow remote attackers to execute arbitrary code by convincing a target to open a specially crafted file from an SMB or WebDAV fileserver.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID?
The vulnerability ID is CVE-2012-4603.
What software is affected by CVE-2012-4603?
Citrix XenApp Online Plug-in for Windows 12.1 and earlier, and Citrix Receiver for Windows 3.2 and earlier are affected.
What is the severity of CVE-2012-4603?
The severity of CVE-2012-4603 is critical with a CVSS score of 7.8.
How can remote attackers exploit CVE-2012-4603?
Remote attackers can exploit CVE-2012-4603 by convincing a target to open a specially crafted file from an SMB or WebDAV fileserver.
Are there any references available for CVE-2012-4603?
Yes, you can find references for CVE-2012-4603 at the following links: - [SecurityFocus](http://www.securityfocus.com/bid/55518) - [SecurityTracker 1](http://www.securitytracker.com/id?1027521) - [SecurityTracker 2](http://www.securitytracker.com/id?1027522)