CVE-2017-5572 โ€” Improper Privilege Management in Citrix Xenserver

Severity
6.5MEDIUMNVD
EPSS
0.4%
top 37.49%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedJan 30
Latest updateMay 13

Description

An issue was discovered in Linux Foundation xapi in Citrix XenServer through 7.0. An authenticated read-only administrator can corrupt the host database.

CVSS vector

CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:HExploitability: 1.2 | Impact: 5.2

Affected Packages1 packages

โ–ถNVDcitrix/xenserver4 versions+3

๐Ÿ”ดVulnerability Details

2
GHSA
GHSA-mvwc-6gpj-59wm: An issue was discovered in Linux Foundation xapi in Citrix XenServer through 7โ†—2022-05-13
โ–ถ
CVEList
CVE-2017-5572: An issue was discovered in Linux Foundation xapi in Citrix XenServer through 7โ†—2017-01-30
โ–ถ

๐Ÿ“‹Vendor Advisories

1
Citrix
CVE-2017-5572: An issue was discovered in Linux Foundation xapi in Citrix XenServer through 7.0. An authenticated read-only administrator can corrupt the host databaโ†—2017-01-30
โ–ถ
CVE-2017-5572 โ€” Improper Privilege Management in Citrix | cvebase