9.8
CVSSv3

CVE-2022-27510

Published: 08/11/2022 Updated: 18/10/2023
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

Unauthorized access to Gateway user capabilities

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

citrix gateway

citrix application_delivery_controller_firmware

Github Repositories

citrix gateway fingerprint Python script to identify Citrix Gateway version based on the reserch from fox-it: blogfox-itcom/2022/12/28/cve-2022-27510-cve-2022-27518-measuring-citrix-adc-gateway-version-adoption-on-the-internet/ Usage citrix_fingerprintpy URL provide only root URL, the script will append /vpn/indexhtml itself

Accurately fingerprint and detect vulnerable (and patched!) versions of Netscaler / Citrix ADC to CVE-2023-3519

CVE-2023-3519 Inspector The cve_2023_3519_inspectorpy is a Python-based vulnerability scanner for detecting the CVE-2023-3519 vulnerability in Citrix Gateways It performs a passive analysis and fingerprinting of target websites to assess their vulnerability based on a series of checks Recent Updates Added functionality to parse the /vpn/pluginlistxml file to determine mor

Recent Articles

Microsoft squashes six security bugs already exploited in the wild
The Register

Topics Security Off-Prem On-Prem Software Offbeat Vendor Voice Vendor Voice Resources Plus: Fixes from Intel, AMD, Citrix and more

Patch Tuesday November's Patch Tuesday also falls on election day in the US, so let's hope that democracy fares better than Microsoft, which reported six of today's bugs are already being exploited in the wild by miscreants. Another 22 vulnerabilities in the Windows giant's products have been labeled "more likely to be exploited" than not. Also, shockingly, Adobe skipped the monthly patch party. "Heads-up that Adobe does not have regularly scheduled updates planned for today," a spokesperson tol...