CVE-2023-24484: A malicious user can cause log files to be written to a directory that they do not have permission to write to.
A malicious user can cause log files to be written to a directory that they do not have permission to write to.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is CVE-2023-24484?
CVE-2023-24484 is a vulnerability that allows a malicious user to write log files to a directory that they do not have permission to write to.
What software is affected by CVE-2023-24484?
Citrix Workspace versions up to 2212, 1912, 1912-cu1, 1912-cu1-hf1, 1912-cu2, 1912-cu3, 1912-cu4, 1912-cu5, 1912-cu6, 2203.1, and 2203.1-cu1 on Windows are affected by CVE-2023-24484.
What is the severity of CVE-2023-24484?
The severity of CVE-2023-24484 is medium with a CVSS score of 5.5.
How can I fix CVE-2023-24484?
To fix CVE-2023-24484, it is recommended to upgrade to the latest version of Citrix Workspace.
Where can I find more information about CVE-2023-24484?
For more information about CVE-2023-24484, you can refer to the following link: https://support.citrix.com/article/CTX477617/citrix-workspace-app-for-windows-security-bulletin-for-cve202324484-cve202324485