First published: Thu Feb 16 2023(Updated: )
A malicious user can cause log files to be written to a directory that they do not have permission to write to.
Credit: secure@citrix.com
Affected Software | Affected Version | How to fix |
---|---|---|
Citrix Workspace | <2212 | |
Citrix Workspace | =1912 | |
Citrix Workspace | =1912-cu1 | |
Citrix Workspace | =1912-cu1-hf1 | |
Citrix Workspace | =1912-cu2 | |
Citrix Workspace | =1912-cu3 | |
Citrix Workspace | =1912-cu4 | |
Citrix Workspace | =1912-cu5 | |
Citrix Workspace | =1912-cu6 | |
Citrix Workspace | =2203.1 | |
Citrix Workspace | =2203.1-cu1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-24484 is a vulnerability that allows a malicious user to write log files to a directory that they do not have permission to write to.
Citrix Workspace versions up to 2212, 1912, 1912-cu1, 1912-cu1-hf1, 1912-cu2, 1912-cu3, 1912-cu4, 1912-cu5, 1912-cu6, 2203.1, and 2203.1-cu1 on Windows are affected by CVE-2023-24484.
The severity of CVE-2023-24484 is medium with a CVSS score of 5.5.
To fix CVE-2023-24484, it is recommended to upgrade to the latest version of Citrix Workspace.
For more information about CVE-2023-24484, you can refer to the following link: https://support.citrix.com/article/CTX477617/citrix-workspace-app-for-windows-security-bulletin-for-cve202324484-cve202324485