First published: Mon Mar 10 2014(Updated: )
Citrix NetScaler Application Delivery Controller (ADC) 9.3.x before 9.3-64.4, 10.0 before 10.0-77.5, and 10.1 before 10.1-118.7 logs user credentials, which allows attackers to obtain sensitive information via unspecified vectors.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Citrix Application Delivery Controller Firmware | =9.3\(1\) | |
Citrix Application Delivery Controller Firmware | =9.3.e | |
Citrix Application Delivery Controller Firmware | =10.0 | |
Citrix Application Delivery Controller Firmware | =10.1 | |
=9.3\(1\) | ||
=9.3.e | ||
=10.0 | ||
=10.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2013-6940 has a severity rating that indicates a potential risk of information disclosure.
To fix CVE-2013-6940, update to the latest firmware versions 9.3-64.4, 10.0-77.5, or 10.1-118.7.
CVE-2013-6940 affects Citrix NetScaler Application Delivery Controller versions 9.3.x before 9.3-64.4, 10.0 before 10.0-77.5, and 10.1 before 10.1-118.7.
CVE-2013-6940 can leak sensitive user credentials due to improper logging.
Yes, CVE-2013-6940 impacts authentication by potentially exposing user credentials to attackers.