⚠ Exploited in the wild
Exploitation observed in the wild. Not yet on CISA KEV.

CVE-2022-27510Authentication Bypass Using an Alternate Path or Channel in Citrix Gateway

Severity
9.8CRITICALCNA
No vector
EPSS
1.6%
top 18.34%
CISA KEV
Not in KEV
Exploit
Exploited in wild
Active exploitation observed
Timeline
PublishedNov 8
Latest updateNov 10

Description

Unauthorized access to Gateway user capabilities Unauthorized access to Gateway user capabilities

Affected Packages3 packages

🔴Vulnerability Details

2
CVEList
Unauthorized access to Gateway user capabilities2022-11-08
VulnCheck
Citrix ShareFile Authentication Bypass Using an Alternate Path or Channel2022

📋Vendor Advisories

1
Citrix
Citrix Gateway and Citrix ADC Security Bulletin for CVE-2022-27510 CVE-2022-27513 and CVE-2022-275162022-11-10

🕵️Threat Intelligence

1
Tenable
CVE-2022-27510: Critical Citrix ADC and Gateway Authentication Bypass Vulnerability2022-11-09