7.2
CVSSv2

CVE-2020-13885

Published: 08/06/2020 Updated: 12/06/2020
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 641
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Citrix Workspace App prior to 1912 on Windows has Insecure Permissions which allows local users to gain privileges during the uninstallation of the application.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

citrix workspace app

Vendor Advisories

Description of Problem Vulnerabilities have been identified in Citrix Workspace app and Citrix Receiver for Windows that could result in a local user escalating their privilege level to administrator during the uninstallation process The issues have the following identifiers: CVE-2020-13884 CVE-2020-13885  These vulnerabilities affect support ...

Github Repositories

Citrix Workspace app before 1912 for Windows - Privilege Escalation #1

Exploit Title: Citrix Workspace app before 1912 for Windows - Privilege Escalation #1 Date: 2020-06-07 Author: Andrew Hess Software Link: wwwcitrixcom/downloads/workspace-app/legacy-workspace-app-for-windows/workspace-app-for-windows-1911html/ Bulletin: supportcitrixcom/article/CTX275460 CVE: CVE-2020-13885 History 20200210 - Vulnerability discovered 2020