First published: Fri Mar 06 2020(Updated: )
** DISPUTED ** Citrix Gateway 11.1, 12.0, and 12.1 allows Information Exposure Through Caching. NOTE: Citrix disputes this as not a vulnerability. There is no sensitive information disclosure through the cache headers on Citrix ADC. The "Via" header lists cache protocols and recipients between the start and end points for a request or a response. The "Age" header provides the age of the cached response in seconds. Both headers are commonly used for proxy cache and the information is not sensitive.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Citrix Gateway Firmware | =11.1 | |
Citrix Gateway Firmware | =12.0 | |
Citrix Gateway Firmware | =12.1 | |
=11.1 | ||
=12.0 | ||
=12.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-10110 is a vulnerability in Citrix Gateway 11.1, 12.0, and 12.1 that allows information exposure through caching.
CVE-2020-10110 has a medium severity rating, with a severity value of 5.3.
CVE-2020-10110 affects Citrix Gateway Firmware version 11.1.
CVE-2020-10110 affects Citrix Gateway Firmware version 12.0.
CVE-2020-10110 affects Citrix Gateway Firmware version 12.1.
Citrix disputes CVE-2020-10110 as not a vulnerability.