PT-2014-3228 · Citrix · Citrix Netscaler Application Delivery Controller

Published

2014-03-10

·

Updated

2014-03-11

·

CVE-2013-6943

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions Citrix NetScaler Application Delivery Controller (ADC) versions 9.3.x through 9.3-64.4 Citrix NetScaler Application Delivery Controller (ADC) versions 10.0 through 10.0-77.5 Citrix NetScaler Application Delivery Controller (ADC) versions 10.1 through 10.1-118.7
Description The issue allows remote attackers to conduct an LDAP injection attack via vectors related to SSH and Web management usernames.
Recommendations For versions 9.3.x through 9.3-64.4, update to version 9.3-64.4 or later. For versions 10.0 through 10.0-77.5, update to version 10.0-77.5 or later. For versions 10.1 through 10.1-118.7, update to version 10.1-118.7 or later.

Fix

Code Injection

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2013-6943

Affected Products

Citrix Netscaler Application Delivery Controller