CVE-2019-18177: Infoleak
In certain Citrix products, information disclosure can be achieved by an authenticated VPN user when there is a configured SSL VPN endpoint. This affects Citrix ADC and Citrix Gateway 13.0-58.30 and later releases before the CTX276688 update.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2019-18177?
CVE-2019-18177 is a vulnerability in certain Citrix products that allows an authenticated VPN user to achieve information disclosure via a configured SSL VPN endpoint.
Which Citrix products are affected by CVE-2019-18177?
Citrix ADC and Citrix Gateway 13.0-58.30 and earlier releases before the CTX276688 update are affected by CVE-2019-18177.
How severe is CVE-2019-18177?
CVE-2019-18177 has a severity score of 6.5, classified as medium severity.
How can I fix CVE-2019-18177?
To fix CVE-2019-18177, it is recommended to apply the CTX276688 update provided by Citrix.
Where can I find more information about CVE-2019-18177?
More information about CVE-2019-18177 can be found in the Citrix support article CTX276688.