CVE-2019-9548
published 2019-06-05CVE-2019-9548: Citrix Application Delivery Management (ADM) 12.1.x before 12.1.50.33 has Incorrect Access Control.
PriorityP350critical10CVSS 3.0
AVNACLPRNUINSCCHIHAH
EPSS
1.48%
70.9th percentile
Citrix Application Delivery Management (ADM) 12.1.x before 12.1.50.33 has Incorrect Access Control.
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| citrix | application_delivery_management | — | — |
| citrix | application_delivery_management | 12.1 – 12.1.50.33 | — |
| citrix | application_delivery_management | 13.0 – 13.0.33.23 | — |
| citrix | citrix_adm | — | — |
| citrix | citrix_application_delivery_management | — | — |
| citrix | xenserver | — | — |
CVSS provenance
nvdv3.010.0CRITICALCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
nvdv2.07.5HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Citrix
CVE-2019-9548: Citrix Application Delivery Management (ADM) 12.1.x before 12.1.50.33 has Incorrect Access Control.
vendor_citrix·2019-06-05·CVSS 10.0
CVE-2019-9548 [CRITICAL] CVE-2019-9548: Citrix Application Delivery Management (ADM) 12.1.x before 12.1.50.33 has Incorrect Access Control.
CVE-2019-9548: Citrix Application Delivery Management (ADM) 12.1.x before 12.1.50.33 has Incorrect Access Control.
Citrix
CVE-2019-9548 - Citrix Application Delivery Management (ADM) Agent Security Update
vendor_citrix·CVSS 10.0
CVE-2019-9548 [CRITICAL] CVE-2019-9548 - Citrix Application Delivery Management (ADM) Agent Security Update
CVE-2019-9548 - Citrix Application Delivery Management (ADM) Agent Security Update
of Problem A vulnerability has been identified in Citrix Application Delivery Management Agent that could allow an unauthenticated attacker with network access to the management agent interface to obtain sensitive information. Disclosed information could be used for privilege escalation beyond the agent system. The following deployment scenarios are affected: 1. Citrix Application Delivery Management server on-premises with ADM Agents 2. Citrix Application Delivery Management on Cloud with ADM Agents deployed on-premises or customer-managed cloud datacenters. This vulnerability has been assigned the following CVE number: • CVE-2019-9548: Information Disclosure Vulnerability in Citrix Application Delivery Ma
GHSA
GHSA-49cc-qp2g-6gg3: Citrix Application Delivery Management (ADM) 12
ghsa_unreviewed·2022-05-24
CVE-2019-9548 [CRITICAL] GHSA-49cc-qp2g-6gg3: Citrix Application Delivery Management (ADM) 12
Citrix Application Delivery Management (ADM) 12.1.x before 12.1.50.33 has Incorrect Access Control.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
https://support.citrix.com/article/CTX247738https://support.citrix.com/v1/search?searchQuery=%22%22&lang=en&sort=cr_date_desc&prod=&pver=&ct=Security+Bulletinhttps://support.citrix.com/article/CTX247738https://support.citrix.com/v1/search?searchQuery=%22%22&lang=en&sort=cr_date_desc&prod=&pver=&ct=Security+Bulletin
2019-06-05
Published