CVE-2020-8197: High severity citrix netscaler application delivery controller firmware vulnerability
Privilege escalation vulnerability on Citrix ADC and Citrix Gateway versions before 13.0-58.30, 12.1-57.18, 12.0-63.21, 11.1-64.14 and 10.5-70.18 allows a low privileged user with management access to execute arbitrary commands.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2020-8197?
CVE-2020-8197 is a privilege escalation vulnerability on Citrix ADC and Citrix Gateway versions before 13.0-58.30, 12.1-57.18, 12.0-63.21, 11.1-64.14, and 10.5-70.18 that allows a low privileged user with management access to execute arbitrary commands.
Which versions of Citrix ADC and Citrix Gateway are affected by CVE-2020-8197?
Citrix ADC and Citrix Gateway versions before 13.0-58.30, 12.1-57.18, 12.0-63.21, 11.1-64.14, and 10.5-70.18 are affected by CVE-2020-8197.
How severe is CVE-2020-8197?
CVE-2020-8197 has a severity rating of 8.8 (high).
What is the fix for CVE-2020-8197?
To fix CVE-2020-8197, update Citrix ADC and Citrix Gateway to versions 13.0-58.30, 12.1-57.18, 12.0-63.21, 11.1-64.14, or 10.5-70.18, which are not affected by the vulnerability.
Where can I find more information about CVE-2020-8197?
More information about CVE-2020-8197 can be found in the Citrix article at https://support.citrix.com/article/CTX276688.