CVE-2019-12990: Path Traversal
Published Jul 16, 2019
·Updated
Citrix SD-WAN 10.2.x before 10.2.3 and NetScaler SD-WAN 10.0.x before 10.0.8 allow Directory Traversal.
Affected Software
2 affected components
Citrix NetScaler SD-WAN>=10.0<10.0.8
Citrix SD-WAN>=10.2<10.2.3
Event History
Jul 16, 2019
CVE Published
via MITRE·05:29 PM
Data Sourced
via MITRE·05:29 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2019-12990.
2
What is the severity of CVE-2019-12990?
The severity of CVE-2019-12990 is critical with a severity value of 9.8.
3
Which software versions are affected by CVE-2019-12990?
Citrix SD-WAN versions before 10.2.3 and NetScaler SD-WAN versions before 10.0.8 are affected by CVE-2019-12990.
4
What is the CWE ID for this vulnerability?
The CWE ID for this vulnerability is 22.
5
How to fix CVE-2019-12990?
Apply the necessary patches and update to Citrix SD-WAN version 10.2.3 or later, or NetScaler SD-WAN version 10.0.8 or later to fix CVE-2019-12990.