First published: Thu Mar 26 2015(Updated: )
Citrix Command Center before 5.1 Build 35.4 and 5.2 before Build 42.7 allows remote attackers to obtain credentials via a direct request to conf/securitydbData.xml.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Citrix Command Center | =5.1 | |
Citrix Command Center | =5.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-2682 is rated as a high severity vulnerability due to the potential for credential exposure.
To fix CVE-2015-2682, upgrade Citrix Command Center to version 5.1 Build 35.4 or 5.2 Build 42.7 or later.
CVE-2015-2682 enables remote attackers to obtain sensitive credentials if the affected software versions are exposed.
CVE-2015-2682 affects Citrix Command Center versions prior to 5.1 Build 35.4 and 5.2 prior to Build 42.7.
Yes, CVE-2015-2682 is a remote vulnerability that allows unauthorized access to sensitive data.