CVE-2018-10650: High severity citrix xenmobile vulnerability
Published May 23, 2018
·Updated
There is an Insufficient Path Validation Vulnerability in Citrix XenMobile Server 10.8 before RP2 and 10.7 before RP3.
Affected Software
5 affected components
Citrix XenMobile Server=10.8
Citrix XenMobile Server=10.8-rp1
Citrix XenMobile Server=10.7
Citrix XenMobile Server=10.7-rp1
Citrix XenMobile Server=10.7-rp2
Event History
May 23, 2018
CVE Published
via MITRE·05:00 PM
Data Sourced
via MITRE·05:00 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this Citrix XenMobile Server vulnerability?
The vulnerability ID for this Citrix XenMobile Server vulnerability is CVE-2018-10650.
2
What is the severity of CVE-2018-10650?
The severity of CVE-2018-10650 is high (7.8).
3
How does the Insufficient Path Validation vulnerability in Citrix XenMobile Server occur?
The Insufficient Path Validation vulnerability in Citrix XenMobile Server occurs due to a lack of proper validation of file or directory paths in certain requests.
4
What versions of Citrix XenMobile Server are affected by this vulnerability?
This vulnerability affects Citrix XenMobile Server 10.8 before RP2 and 10.7 before RP3.
5
Is there a fix available for this vulnerability in Citrix XenMobile Server?
Yes, a fix is available for this vulnerability in Citrix XenMobile Server. Please refer to the following reference for more information: [link](https://support.citrix.com/article/CTX234879)