First published: Fri Sep 18 2020(Updated: )
Improper authentication in Citrix StoreFront Server < 1912.0.1000 allows an attacker who is authenticated on the same Microsoft Active Directory domain as a Citrix StoreFront server to read arbitrary files from that server.
Credit: support@hackerone.com
Affected Software | Affected Version | How to fix |
---|---|---|
Citrix StoreFront Server | <2006 | |
Citrix StoreFront Server | >=3.0<3.0.8001 | |
Citrix StoreFront Server | >=3.12<3.12.5001 | |
Citrix StoreFront Server | >=1912<1912.0.1000 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.