Local Privilege escalation allows a low-privileged user to gain SYSTEM privileges in Virtual Delivery Agent for Windows used by Citrix Virtual Apps and Desktops and Citrix DaaS
End of life: 3/23/2027, End of support: 3/23/2027, Latest version: 2203 CU7 Update 4
End of life: 3/23/2027, End of support: 3/23/2027, Latest version: 2203 CU7 Update 4
Cross SiteScripting vulnerability in Citrix Session Recording allows attacker to perform Cross Site Scripting
Users with only access to launch VDA applications can launch an unauthorized desktop
A vulnerability has been identified that, if exploited, could result in a local user elevating their privilege level to NT AUTHORITY\SYSTEM on a Citrix Virtual Apps and Desktops Windows VDA.