cve-2020-8193
MEDIUM CVSS 6.5 cisa_known_exploited
Description
Citrix ADC, Citrix Gateway, and multiple Citrix SD-WAN WANOP appliance models contain an authorization bypass vulnerability that may allow unauthenticated access to certain URL endpoints. The attacker must have access to the NetScaler IP (NSIP) in order to perform exploitation.
Timeline
- Published
- 2021-11-03
- Last Modified
- 2021-11-03
CVSS Details
CVSS details not available.
Affected Products
No product information available.
References
No references available.
Linked Vulnerabilities
No linked vulnerabilities found.
{
"cvss": 6.5,
"datePublished": "2021-11-03",
"dateUpdated": "2021-11-03",
"description": "Citrix ADC, Citrix Gateway, and multiple Citrix SD-WAN WANOP appliance models contain an authorization bypass vulnerability that may allow unauthenticated access to certain URL endpoints. The attacker must have access to the NetScaler IP (NSIP) in order to perform exploitation.",
"dueDate": "2022-05-03",
"id": "CVE-2020-8193",
"kev_catalogs": [
"cisa"
],
"knownRansomwareCampaignUse": "Unknown",
"notes": "https://nvd.nist.gov/vuln/detail/CVE-2020-8193",
"product": "Application Delivery Controller (ADC), Gateway, and SD-WAN WANOP Appliance",
"requiredAction": "Apply updates per vendor instructions.",
"severity": "MEDIUM",
"source": "cisa_known_exploited",
"title": "Citrix ADC, Gateway, and SD-WAN WANOP Appliance Authorization Bypass Vulnerability",
"vendor": "Citrix"
}
Enrichment data
Aggregated bundle (all enrichments)