694
VMScore

CVE-2022-27511

Published: 16/06/2022 Updated: 18/07/2023
CVSS v2 Base Score: 7.8 | Impact Score: 6.9 | Exploitability Score: 10
CVSS v3 Base Score: 8.1 | Impact Score: 5.9 | Exploitability Score: 2.2
VMScore: 694
Vector: AV:N/AC:L/Au:N/C:N/I:C/A:N

Vulnerability Summary

Corruption of the system by a remote, unauthenticated user. The impact of this can include the reset of the administrator password at the next device reboot, allowing an attacker with ssh access to connect with the default administrator credentials after the device has rebooted.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

citrix application delivery management

Github Repositories

Implements the protocol for FlexLM (Flex License Manager), as well as a PoC for an authentication bypass

Testing / exploitation tools for FlexNet's FlexLM license manager This license manager is used by a whole lotta software, but we developed this for Citrix ADM vulnerabilities (CVE-2022-27511 and CVE-2022-27512) Usage Unauthenticated Stuff The following commands require no authentication, and can be amazingly helpful! To get a version number: $ ruby /flexnet-toolsrb 10