CVE-2020-6175: Medium severity Citrix Citrix SD-WAN Center vulnerability
Published Mar 16, 2020
·Updated
Citrix SD-WAN 10.2.x before 10.2.6 and 11.0.x before 11.0.3 has Missing SSL Certificate Validation.
Affected Software
4 affected components
Citrix Citrix SD-WAN Center>=10.1.1<=10.1.2
Citrix Citrix SD-WAN Center>=10.2.0<10.2.6
Citrix Citrix SD-WAN Center>=11.0.0<11.0.3
Citrix NetScaler SD-WAN Center<=10.0.8
Event History
Mar 16, 2020
CVE Published
via MITRE·08:42 PM
Data Sourced
via MITRE·08:42 PM
Description
Data Sourced
via NVD·09:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2020-6175?
The severity of CVE-2020-6175 is medium (CVSS score of 5.9).
2
Which versions of Citrix SD-WAN are affected by CVE-2020-6175?
Citrix SD-WAN versions 10.2.x before 10.2.6 and 11.0.x before 11.0.3 are affected by CVE-2020-6175.
3
What is the vulnerability in Citrix SD-WAN?
The vulnerability in Citrix SD-WAN is Missing SSL Certificate Validation.
4
How can I fix CVE-2020-6175 on Citrix SD-WAN?
To fix CVE-2020-6175 on Citrix SD-WAN, you should upgrade to version 10.2.6 or 11.0.3.
5
Where can I find more information about CVE-2020-6175?
You can find more information about CVE-2020-6175 on the Citrix support website (https://support.citrix.com/article/CTX263526) and by searching their support knowledge base.