CVE-2018-17447: High severity citrix sd-wan vulnerability
Published Oct 23, 2018
·Updated
An Information Exposure Through Log Files issue was discovered in Citrix SD-WAN 10.1.0 and NetScaler SD-WAN 9.3.x before 9.3.6 and 10.0.x before 10.0.4.
Affected Software
3 affected components
Citrix NetScaler SD-WAN>=9.3.0<9.3.6
Citrix NetScaler SD-WAN>=10.0.0<10.0.4
Citrix SD-WAN=10.1.0
Remediation
Patch Available
Event History
Oct 23, 2018
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2018-17447.
2
What is the severity of CVE-2018-17447?
The severity of CVE-2018-17447 is high with a score of 7.5.
3
Which software versions are affected by CVE-2018-17447?
Citrix SD-WAN 10.1.0 and NetScaler SD-WAN 9.3.x before 9.3.6 and 10.0.x before 10.0.4 are affected by CVE-2018-17447.
4
What is the description of CVE-2018-17447?
CVE-2018-17447 is an Information Exposure Through Log Files issue discovered in Citrix SD-WAN 10.1.0 and NetScaler SD-WAN 9.3.x before 9.3.6 and 10.0.x before 10.0.4.
5
How can I fix CVE-2018-17447?
To fix CVE-2018-17447, it is recommended to upgrade Citrix SD-WAN to version 10.1.1 or later, or upgrade NetScaler SD-WAN to version 9.3.6 or later.