CVE-2020-10110: Medium severity citrix gateway firmware vulnerability
DISPUTED Citrix Gateway 11.1, 12.0, and 12.1 allows Information Exposure Through Caching. NOTE: Citrix disputes this as not a vulnerability. There is no sensitive information disclosure through the cache headers on Citrix ADC. The "Via" header lists cache protocols and recipients between the start and end points for a request or a response. The "Age" header provides the age of the cached response in seconds. Both headers are commonly used for proxy cache and the information is not sensitive.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2020-10110?
CVE-2020-10110 is a vulnerability in Citrix Gateway 11.1, 12.0, and 12.1 that allows information exposure through caching.
Is CVE-2020-10110 a severe vulnerability?
CVE-2020-10110 has a medium severity rating, with a severity value of 5.3.
How does CVE-2020-10110 affect Citrix Gateway Firmware version 11.1?
CVE-2020-10110 affects Citrix Gateway Firmware version 11.1.
How does CVE-2020-10110 affect Citrix Gateway Firmware version 12.0?
CVE-2020-10110 affects Citrix Gateway Firmware version 12.0.
How does CVE-2020-10110 affect Citrix Gateway Firmware version 12.1?
CVE-2020-10110 affects Citrix Gateway Firmware version 12.1.
What is Citrix's response to CVE-2020-10110?
Citrix disputes CVE-2020-10110 as not a vulnerability.