First published: Mon Dec 14 2020(Updated: )
Improper privilege management on services run by Citrix Gateway Plug-in for Windows, versions before and including 13.0-61.48 and 12.1-58.15, allows an attacker to modify arbitrary files.
Credit: support@hackerone.com
Affected Software | Affected Version | How to fix |
---|---|---|
Citrix Gateway Plug-in For Linux | >=12.0<=12.1-58 | |
Citrix Gateway Plug-in For Linux | >=13.0<=13.0-61.48 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-8258 is rated as a high severity vulnerability due to improper privilege management that allows unauthorized file modifications.
To fix CVE-2020-8258, upgrade to Citrix Gateway Plug-in versions 12.1-58.16 or 13.0-61.49 and later.
CVE-2020-8258 affects users of Citrix Gateway Plug-in for Windows, specifically versions 12.1-58.15 and 13.0-61.48 and below.
CVE-2020-8258 can be exploited by attackers to modify arbitrary files on systems running vulnerable versions of the Citrix Gateway Plug-in.
Yes, CVE-2020-8258 specifically affects the Citrix Gateway Plug-in for Windows used in remote access configurations.