4.3
CVSSv2

CVE-2013-6944

Published: 11/03/2014 Updated: 11/03/2014
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Cross-site scripting (XSS) vulnerability in the user interface in the AAA TM vServer in Citrix NetScaler Application Delivery Controller (ADC) 9.3.x prior to 9.3-64.4, 10.0 prior to 10.0-77.5, and 10.1 prior to 10.1-118.7 allows remote malicious users to inject arbitrary web script or HTML via unspecified vectors.

Vulnerable Product Search on Vulmon Subscribe to Product

citrix netscaler application delivery controller firmware 10.0

citrix netscaler application delivery controller firmware 9.3\\(1\\)

citrix netscaler application delivery controller firmware 9.3.e

citrix netscaler application delivery controller firmware 10.1

Vendor Advisories

Description of Problem A number of security vulnerabilities have been identified in Citrix NetScaler Application Delivery Controller (ADC) These vulnerabilities have been assigned the following CVE numbers: • CVE-2013-6939: Denial of service vulnerability in Citrix NetScaler Application Delivery Controller RADIUS authentication • CVE-2012-21 ...