CVE-2019-18177

In certain Citrix products, information disclosure can be achieved by an authenticated VPN user when there is a configured SSL VPN endpoint. This affects Citrix ADC and Citrix Gateway 13.0-58.30 and later releases before the CTX276688 update.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:citrix:application_delivery_controller_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:citrix:application_delivery_controller:-:*:*:*:*:*:*:*

Configuration 2 (hide)

cpe:2.3:a:citrix:gateway:*:*:*:*:*:*:*:*

History

05 Jan 2023, 18:38

Type Values Removed Values Added
First Time Citrix
Citrix application Delivery Controller Firmware
Citrix application Delivery Controller
Citrix gateway
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 6.5
CWE NVD-CWE-noinfo
CPE cpe:2.3:h:citrix:application_delivery_controller:-:*:*:*:*:*:*:*
cpe:2.3:a:citrix:gateway:*:*:*:*:*:*:*:*
cpe:2.3:o:citrix:application_delivery_controller_firmware:*:*:*:*:*:*:*:*
References (MISC) https://support.citrix.com/article/CTX276688/citrix-application-delivery-controller-citrix-gateway-and-citrix-sdwan-wanop-appliance-security-update - (MISC) https://support.citrix.com/article/CTX276688/citrix-application-delivery-controller-citrix-gateway-and-citrix-sdwan-wanop-appliance-security-update - Vendor Advisory

26 Dec 2022, 21:15

Type Values Removed Values Added
New CVE

Information

Published : 2022-12-26 21:15

Updated : 2023-12-10 14:48


NVD link : CVE-2019-18177

Mitre link : CVE-2019-18177

CVE.ORG link : CVE-2019-18177


JSON object : View

Products Affected

citrix

  • application_delivery_controller
  • application_delivery_controller_firmware
  • gateway