CVE-2018-18517: XSS
Published Oct 24, 2018
·Updated
Citrix NetScaler Gateway 10.5.x before 10.5.69.003, 11.1.x before 11.1.59.004, 12.0.x before 12.0.58.7, and 12.1.x before 12.1.49.1 has XSS.
Affected Software
4 affected components
Citrix Netscaler Gateway Firmware>=10.5.0<10.5.69.003
Citrix Netscaler Gateway Firmware>=11.1.0<11.1.59.004
Citrix Netscaler Gateway Firmware>=12.0.0<12.0.58.7
Citrix Netscaler Gateway Firmware>=12.1.0<12.1.49.1
Event History
Oct 24, 2018
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this Citrix NetScaler Gateway vulnerability?
The vulnerability ID is CVE-2018-18517.
2
What is the severity of CVE-2018-18517?
The severity of CVE-2018-18517 is medium with a severity value of 4.8.
3
What is the affected software for CVE-2018-18517?
The affected software for CVE-2018-18517 is Citrix NetScaler Gateway Firmware versions 10.5.x, 11.1.x, 12.0.x, and 12.1.x.
4
What is the description of CVE-2018-18517?
CVE-2018-18517 is a cross-site scripting (XSS) vulnerability in Citrix NetScaler Gateway.
5
How can I fix CVE-2018-18517?
To fix CVE-2018-18517, it is recommended to update Citrix NetScaler Gateway Firmware to version 10.5.69.003, 11.1.59.004, 12.0.58.7, or 12.1.49.1.