First published: Fri Jan 10 2020(Updated: )
Citrix XenApp Online Plug-in for Windows 12.1 and earlier, and Citrix Receiver for Windows 3.2 and earlier could allow remote attackers to execute arbitrary code by convincing a target to open a specially crafted file from an SMB or WebDAV fileserver.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Citrix Receiver | <=3.2 | |
Citrix XenApp Online | <=12.1 | |
Microsoft Windows |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2012-4603.
Citrix XenApp Online Plug-in for Windows 12.1 and earlier, and Citrix Receiver for Windows 3.2 and earlier are affected.
The severity of CVE-2012-4603 is critical with a CVSS score of 7.8.
Remote attackers can exploit CVE-2012-4603 by convincing a target to open a specially crafted file from an SMB or WebDAV fileserver.
Yes, you can find references for CVE-2012-4603 at the following links: - [SecurityFocus](http://www.securityfocus.com/bid/55518) - [SecurityTracker 1](http://www.securitytracker.com/id?1027521) - [SecurityTracker 2](http://www.securitytracker.com/id?1027522)