CVE-2020-8196
Improper access control in Citrix ADC and Citrix Gateway versions before 13.0-58.30, 12.1-57.18, 12.0-63.21, 11.1-64.14 and 10.5-70.18 and Citrix SDWAN WAN-OP versions before 11.1.1a, 11.0.3d and 10.2.7 resulting in limited information disclosure to low privileged users.
- Affected products
- Citrix Adc, Citrix Gateway, Citrix Sd-Wan Wanop
- Citrix Application Delivery Controller Firmware
- < 10.5-70.18, 11.1-64.14, 12.0-63.21, 12.1-57.18, 13.0-58.30
- CVSS 3.1
- 4.3 MEDIUM
- EPSS
- 26.3% (98th percentile)
- Weakness
- CWE-287, CWE-284
- NVD status
- Analyzed
- Published
- 2020-07-10
CVE-2020-8196 at NVD
4 known exploits for CVE-2020-8196
Proof-of-concept code and exploit modules indexed by Sploitus