CVE-2020-8210: Infoleak
Insufficient protection of secrets in Citrix XenMobile Server 10.12 before RP3, Citrix XenMobile Server 10.11 before RP6, Citrix XenMobile Server 10.10 RP6 and Citrix XenMobile Server before 10.9 RP5 discloses credentials of a service account.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2020-8210?
CVE-2020-8210 has a medium severity rating due to the potential exposure of sensitive service account credentials.
How do I fix CVE-2020-8210?
To fix CVE-2020-8210, upgrade to Citrix XenMobile Server version 10.12 RP3, 10.11 RP6, 10.10 RP6, or ensure your version is at least 10.9 RP5.
What versions of Citrix XenMobile Server are affected by CVE-2020-8210?
CVE-2020-8210 affects Citrix XenMobile Server versions 10.12 before RP3, 10.11 before RP6, 10.10 up to RP6, and versions before 10.9 RP5.
What type of vulnerability is CVE-2020-8210?
CVE-2020-8210 is an insufficient protection vulnerability allowing unauthorized access to service account credentials.
Is CVE-2020-8210 being exploited in the wild?
As of now, there are no confirmed reports of CVE-2020-8210 being actively exploited in the wild.