First published: Mon Aug 17 2020(Updated: )
Improper access control in Citrix XenMobile Server 10.12 before RP3, Citrix XenMobile Server 10.11 before RP6, Citrix XenMobile Server 10.10 RP6 and Citrix XenMobile Server before 10.9 RP5 allows access to privileged functionality.
Credit: support@hackerone.com
Affected Software | Affected Version | How to fix |
---|---|---|
Citrix XenMobile Server | <=10.9.0 | |
Citrix XenMobile Server | =10.10.0 | |
Citrix XenMobile Server | =10.10.0-rolling_patch1 | |
Citrix XenMobile Server | =10.10.0-rolling_patch2 | |
Citrix XenMobile Server | =10.10.0-rolling_patch3 | |
Citrix XenMobile Server | =10.10.0-rolling_patch4 | |
Citrix XenMobile Server | =10.10.0-rolling_patch5 | |
Citrix XenMobile Server | =10.11.0 | |
Citrix XenMobile Server | =10.11.0-rolling_patch1 | |
Citrix XenMobile Server | =10.11.0-rolling_patch2 | |
Citrix XenMobile Server | =10.11.0-rolling_patch3 | |
Citrix XenMobile Server | =10.11.0-rolling_patch4 | |
Citrix XenMobile Server | =10.11.0-rolling_patch5 | |
Citrix XenMobile Server | =10.12.0 | |
Citrix XenMobile Server | =10.12.0-rolling_patch1 | |
Citrix XenMobile Server | =10.12.0-rolling_patch2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-8212 is a vulnerability related to improper access control in Citrix XenMobile Server.
CVE-2020-8212 has a severity rating of 9.8, which is considered critical.
Citrix XenMobile Server versions 10.9.0, 10.10.0, 10.11.0, and 10.12.0 are affected by CVE-2020-8212.
To fix CVE-2020-8212, it is recommended to apply the necessary security patches provided by Citrix.
More information about CVE-2020-8212 can be found at the following link: https://support.citrix.com/article/CTX277457