First published: Thu Jul 28 2022(Updated: )
Unauthenticated redirection to a malicious website
Credit: secure@citrix.com
Affected Software | Affected Version | How to fix |
---|---|---|
Citrix Gateway | >=12.1<12.1-65.15 | |
Citrix Gateway | >=13.0<13.0-86.17 | |
Citrix Gateway | >=13.1<13.1-24.38 | |
Citrix Application Delivery Controller Firmware | >=12.1<12.1-65.15 | |
Citrix Application Delivery Controller Firmware | >=13.0<13.0-86.17 | |
Citrix Application Delivery Controller Firmware | >=13.1<13.1-24.38 | |
Citrix Application Delivery Controller | ||
Citrix Application Delivery Controller Firmware | >=12.1<12.1-55.282 | |
Citrix Application Delivery Controller Firmware | >=12.1<12.1-55.282 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-27509 is a vulnerability that allows unauthenticated redirection to a malicious website.
Citrix Gateway versions 12.1-65.15, 13.0-86.17, and 13.1-24.38, as well as Citrix Application Delivery Controller Firmware versions 12.1-65.15, 13.0-86.17, and 13.1-24.38 are affected by CVE-2022-27509.
CVE-2022-27509 has a severity rating of 6.1, which is considered medium.
To mitigate CVE-2022-27509, it is recommended to update Citrix Gateway and Citrix Application Delivery Controller Firmware to versions that are not vulnerable.
You can find more information about CVE-2022-27509 on the Citrix support website at the following link: https://support.citrix.com/article/CTX457836