CVE-2018-10651: Medium severity citrix xenmobile vulnerability
Published May 23, 2018
·Updated
There are Open Redirect Vulnerabilities in Citrix XenMobile Server 10.8 before RP2 and 10.7 before RP3.
Affected Software
5 affected components
Citrix XenMobile Server=10.8
Citrix XenMobile Server=10.8-rp1
Citrix XenMobile Server=10.7
Citrix XenMobile Server=10.7-rp1
Citrix XenMobile Server=10.7-rp2
Event History
May 23, 2018
CVE Published
via MITRE·05:00 PM
Data Sourced
via MITRE·05:00 PM
Description
Frequently Asked Questions
1
What are the risks associated with CVE-2018-10651?
CVE-2018-10651 allows attackers to perform open redirects, potentially leading to phishing attacks.
2
How can I mitigate CVE-2018-10651 in my Citrix XenMobile Server?
You can mitigate CVE-2018-10651 by applying the latest updates provided by Citrix for XenMobile Server versions 10.8 RP2 and 10.7 RP3.
3
Which versions of Citrix XenMobile are affected by CVE-2018-10651?
CVE-2018-10651 affects Citrix XenMobile Server versions 10.8 before RP2 and 10.7 before RP3.
4
Is there a patch available for CVE-2018-10651?
Yes, Citrix has released patches for the affected versions of XenMobile Server to address CVE-2018-10651.
5
What is the impact of CVE-2018-10651 on user data?
CVE-2018-10651 can potentially allow unauthorized users to redirect clients to malicious websites, impacting user data security.