CVE-2014-4347: Infoleak
Citrix NetScaler Application Delivery Controller (ADC) and NetScaler Gateway (formerly Access Gateway Enterprise Edition) before 9.3-62.4 and 10.x before 10.1-126.12 allows attackers to obtain sensitive information via vectors related to a cookie.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2014-4347?
CVE-2014-4347 is considered a medium severity vulnerability.
How do I fix CVE-2014-4347?
To fix CVE-2014-4347, upgrade to Citrix NetScaler Application Delivery Controller and NetScaler Gateway versions 9.3-62.4 or 10.1-126.12 or later.
What types of sensitive information could be exposed by CVE-2014-4347?
CVE-2014-4347 could allow attackers to access sensitive information by exploiting vulnerabilities related to cookie management.
Which versions of Citrix software are affected by CVE-2014-4347?
CVE-2014-4347 affects Citrix NetScaler Application Delivery Controller and NetScaler Gateway versions prior to 9.3-62.4 and 10.1-126.12.
How can I verify if my system is vulnerable to CVE-2014-4347?
You can verify if your system is vulnerable to CVE-2014-4347 by checking the version of Citrix NetScaler software installed on your system.