First published: Thu Jun 16 2022(Updated: )
Corruption of the system by a remote, unauthenticated user. The impact of this can include the reset of the administrator password at the next device reboot, allowing an attacker with ssh access to connect with the default administrator credentials after the device has rebooted.
Credit: secure@citrix.com secure@citrix.com
Affected Software | Affected Version | How to fix |
---|---|---|
Citrix Application Delivery Management | <13.0-85.19 | |
Citrix Application Delivery Management | >=13.1<13.1-21.53 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-27511 is a vulnerability that allows a remote unauthenticated user to corrupt the system and reset the administrator password.
The impact of CVE-2022-27511 includes the reset of the administrator password at the next device reboot, allowing an attacker with SSH access to connect with the default administrator credentials.
CVE-2022-27511 has a severity rating of 8.1, which is considered high.
Citrix Application Delivery Management versions up to 13.0-85.19 and versions between 13.1 and 13.1-21.53 are affected by CVE-2022-27511.
To fix CVE-2022-27511, it is recommended to apply the necessary patches provided by Citrix and follow the mitigation steps mentioned in the official security bulletin.