Vulnerability Name: | CVE-2016-2071 (CCN-110768) | ||||||||||||
Assigned: | 2016-02-10 | ||||||||||||
Published: | 2016-02-10 | ||||||||||||
Updated: | 2016-12-03 | ||||||||||||
Summary: | Citrix NetScaler Application Delivery Controller (ADC) and NetScaler Gateway 11.x before 11.0 Build 64.34, 10.5 before 10.5 Build 59.13, and 10.5.e before Build 59.1305.e allows remote attackers to gain privileges via unspecified NS Web GUI commands. | ||||||||||||
CVSS v3 Severity: | 9.8 Critical (CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H) 8.5 High (Temporal CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C)
6.4 Medium (CCN Temporal CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L/E:U/RL:O/RC:C)
| ||||||||||||
CVSS v2 Severity: | 10.0 High (CVSS v2 Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C)
| ||||||||||||
Vulnerability Type: | CWE-264 | ||||||||||||
Vulnerability Consequences: | Gain Access | ||||||||||||
References: | Source: MITRE Type: CNA CVE-2016-2071 Source: CCN Type: CTX206001 Citrix NetScaler Application Delivery Controller and NetScaler Gateway Multiple Security Updates Source: CONFIRM Type: Vendor Advisory http://support.citrix.com/article/CTX206001 Source: SECTRACK Type: UNKNOWN 1035098 Source: XF Type: UNKNOWN citrix-netscaler-cve20162071-priv-esc(110768) | ||||||||||||
Vulnerable Configuration: | Configuration 1: Configuration 2: ![]() | ||||||||||||
BACK |