CVE-2012-6314Citrix Xendesktop vulnerability

4 documents3 sources
Severity
5.0MEDIUMNVD
EPSS
0.7%
top 28.53%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedDec 26
Latest updateMay 17

Description

Citrix XenDesktop Virtual Desktop Agent (VDA) 5.6.x before 5.6.200, when making changes to the server-side policy that control USB redirection, does not propagate changes to the VDA, which allows authenticated users to retain access to the USB device.

CVSS vector

AV:N/AC:L/C:N/I:P/A:NExploitability: 10.0 | Impact: 2.9

Affected Packages9 packages

🔴Vulnerability Details

1
GHSA
GHSA-5ggg-wqqw-9v43: Citrix XenDesktop Virtual Desktop Agent (VDA) 52022-05-17

📋Vendor Advisories

2
Citrix
CVE-2012-6314: Citrix XenDesktop Virtual Desktop Agent (VDA) 5.6.x before 5.6.200, when making changes to the server-side policy that control USB redirection, does n2012-12-26
Citrix
Citrix Security Bulletin CTX135813