Citrix Update
2847Warning Date
Severity Level
Warning Number
Target Sector
9 September, 2020
● High
2020-1734
All
Description:
Citrix has released security update to address a vulnerability in the following products:
- Citrix StoreFront
- Before 1909
- Citrix StoreFront 1912 LTSR
- Before CU1 (1912.0.1000)
- Citrix StoreFront 3.12 for 7.15 LTSR
- Before CU5 Hotfix (3.12.5001)
- Citrix StoreFront 3.0 for 7.6 LTSR
- Before CU8 Hotfix (3.0.8001)
* If the attacker authenticated on the same Microsoft Active Directory domain as a Citrix StoreFront server.
Threats:
Attacker could exploit this vulnerability by executing arbitrary code.
Best practice and Recommendations:
The CERT team encourages users to update the affected versions and to review Citrix security advisory: