CVE-2014-1899: XSS
Cross-site scripting (XSS) vulnerability in Citrix NetScaler Gateway (formerly Citrix Access Gateway Enterprise Edition) 9.x before 9.3.66.5 and 10.x before 10.1.123.9 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2014-1899?
CVE-2014-1899 is categorized as a medium-severity vulnerability due to its potential for cross-site scripting attacks.
How do I fix CVE-2014-1899?
To fix CVE-2014-1899, upgrade to Citrix NetScaler Gateway version 9.3.66.5 or later, or 10.1.123.9 or later.
What are the affected versions for CVE-2014-1899?
CVE-2014-1899 affects Citrix NetScaler Gateway versions 9.x before 9.3.66.5 and 10.x before 10.1.123.9.
What type of vulnerability is CVE-2014-1899?
CVE-2014-1899 is a cross-site scripting (XSS) vulnerability that allows remote attackers to inject arbitrary web scripts or HTML.
Can CVE-2014-1899 impact the security of users?
Yes, CVE-2014-1899 can compromise user sessions and lead to unauthorized actions by exploiting XSS techniques.