Citrix XenApp XML Service Interface Vulnerability
Last Update Date:
13 Dec 2012 10:34
Release Date:
13 Dec 2012
4706
Views
RISK: Medium Risk
TYPE: Security software and application - Security Software & Appliance
A vulnerability has been identified in Citrix XenApp. A remote user can execute arbitrary code on the target system.
A remote user can send specially crafted data to trigger a flaw in the XML Service interface and execute arbitrary code on the target system. The code will run with the privileges of the target service.
Impact
- Remote Code Execution
System / Technologies affected
- Versions 6.5, 6.5 FP1
Solutions
Before installation of the software, please visit the software manufacturer web-site for more details.
- The vendor has issued a hotfix (Hotfix XA650R01W2K8R2X64033).
http://support.citrix.com/article/CTX135066
Vulnerability Identifier
Source
Related Link
Share with