PT-2001-2327 · Citrix · Citrix Ica Client
Published
2001-12-13
·
Updated
2017-07-11
·
CVE-2001-1192
CVSS v2.0
7.5
High
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
Citrix Independent Computing Architecture (ICA) Client for Windows version 6.1
Description
The issue allows remote malicious websites to execute arbitrary code via a .ICA file, which is downloaded and automatically executed by the client.
Recommendations
For Citrix Independent Computing Architecture (ICA) Client for Windows version 6.1, consider disabling the automatic execution of .ICA files as a temporary workaround until a patch is available. Restrict access to untrusted websites to minimize the risk of exploitation.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Citrix Ica Client