Citrix Session Recording vulnerabilities
3 known vulnerabilities affecting citrix/session_recording.
Total CVEs
3
CISA KEV
2
actively exploited
Public exploits
1
Exploited in wild
0
Severity breakdown
HIGH1MEDIUM2
Vulnerabilities
Page 1 of 1
CVE-2024-8068MEDIUMCVSS 5.1KEVfixed in 2407v1912+3 more2024-11-12
CVE-2024-8068 [MEDIUM] CWE-269 CVE-2024-8068: Privilege escalation to NetworkService Account access in Citrix Session Recording when an attacker i
Privilege escalation to NetworkService Account access in Citrix Session Recording when an attacker is an authenticated user in the same Windows Active Directory domain as the session recording server domain
nvdcitrix
CVE-2024-8069MEDIUMCVSS 5.1KEVfixed in 2407v1912+3 more2024-11-12
CVE-2024-8069 [MEDIUM] CWE-502 CVE-2024-8069: Limited remote code execution with privilege of a NetworkService Account access in Citrix Session Re
Limited remote code execution with privilege of a NetworkService Account access in Citrix Session Recording if the attacker is an authenticated user on the same intranet as the session recording server
nvd
CVE-2023-6184HIGHCVSS 7.2PoC2024-01-16
CVE-2023-6184 [HIGH] CWE-913 Citrix Session Recording Security Bulletin for CVE-2023-6184
Citrix Session Recording Security Bulletin for CVE-2023-6184
Pre-requisites CWE CVE-2023-6184 An authenticated user can perform RCE Attacker must possess admin privileges to the Session Recording server CWE-913 Instructions Cloud Software Group strongly urges affected customers of Citrix Session Recording to install the relevant updated versions of Citrix Session Recording as soon their upgrade schedule pe
citrix