First published: Tue Jul 16 2019(Updated: )
Citrix SD-WAN 10.2.x before 10.2.3 and NetScaler SD-WAN 10.0.x before 10.0.8 have Improper Input Validation (issue 6 of 6).
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Citrix NetScaler SD-WAN | >=10.0<10.0.8 | |
Citrix SD-WAN | >=10.2<10.2.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-12992 is a vulnerability in Citrix SD-WAN and NetScaler SD-WAN that allows improper input validation.
CVE-2019-12992 has a severity rating of 8.8, which is classified as critical.
CVE-2019-12992 affects Citrix SD-WAN versions 10.2.x before 10.2.3 and NetScaler SD-WAN versions 10.0.x before 10.0.8.
CVE-2019-12992 is associated with CWE-20 (Improper Input Validation) and CWE-78 (Improper Neutralization of Special Elements Used in an OS Command).
To fix CVE-2019-12992, it is recommended to update Citrix SD-WAN to version 10.2.3 or later and NetScaler SD-WAN to version 10.0.8 or later.