Citrix Xenserver vulnerabilities
228 known vulnerabilities affecting citrix/xenserver.
Total CVEs
228
CISA KEV
11
actively exploited
Public exploits
23
Exploited in wild
11
Severity breakdown
CRITICAL42HIGH82MEDIUM93LOW11
Vulnerabilities
Page 11 of 12
CVE-2014-1910MEDIUMCVSS 5.8
CVE-2014-1910 [MEDIUM] CVE-2014-1910 - SSL Certificate Validation Vulnerability in the Citrix ShareFile Mobile Application for Android and the Citrix ShareFile Mobile for Tablets Application for Android
CVE-2014-1910 - SSL Certificate Validation Vulnerability in the Citrix ShareFile Mobile Application for Android and the Citrix ShareFile Mobile for Tablets Application for Android
of Problem A vulnerability has been identified in the Citrix ShareFile Mobile application for Android and the Citrix
citrix
CVE-2013-2263MEDIUMCVSS 5.0
CVE-2013-2263 [MEDIUM] Citrix Security Bulletin CTX136623
Citrix Security Bulletin CTX136623
CVE References: CVE-2013-2263, CVE-2025-12101, CVE-2025-62626, CVE-2026-23554, CVE-2026-3055, CVE-2026-4368, CVE-2026-4397
Affected Products: Citrix ADM, Citrix Hypervisor, Citrix Virtual Apps and Desktops, Endpoint Management, NetScaler ADC, NetScaler Gateway, XenServer
citrix
CVE-2009-2214MEDIUMCVSS 5.0
CVE-2009-2214 [MEDIUM] Citrix Security Bulletin CTX121172
Citrix Security Bulletin CTX121172
CVE References: CVE-2009-2214, CVE-2025-12101, CVE-2025-62626, CVE-2026-23554, CVE-2026-3055, CVE-2026-4368, CVE-2026-4397
Affected Products: Citrix ADM, Citrix Hypervisor, Citrix Virtual Apps and Desktops, Endpoint Management, NetScaler ADC, NetScaler Gateway, XenServer
citrix
CVE-2015-2682MEDIUMCVSS 5.0PoC
CVE-2015-2682 [MEDIUM] Citrix Security Bulletin CTX200584
Citrix Security Bulletin CTX200584
CVE References: CVE-2015-2682, CVE-2015-2683, CVE-2025-12101, CVE-2025-62626, CVE-2026-23554, CVE-2026-3055, CVE-2026-4368, CVE-2026-4397
Affected Products: Citrix ADM, Citrix Hypervisor, Citrix Virtual Apps and Desktops, Endpoint Management, NetScaler ADC, NetScaler Gateway, XenServer
citrix
CVE-2006-4846MEDIUMCVSS 5.1
CVE-2006-4846 [MEDIUM] LDAP authentication vulnerability in Access Gateway Advanced Access Control
LDAP authentication vulnerability in Access Gateway Advanced Access Control
of Problem If the Advanced Access Control option (AAC) of Access Gateway is configured to use LDAP authentication then it is possible for a user to logon without supplying valid credentials. This vulnerability only affects AAC Version 4.2 deployments that are using LDAP authentication; Access Gateway deployments that do no
citrix
CVE-2013-6077MEDIUMCVSS 5.8
CVE-2013-6077 [MEDIUM] Citrix Security Bulletin CTX138627
Citrix Security Bulletin CTX138627
CVE References: CVE-2013-6077, CVE-2025-12101, CVE-2025-62626, CVE-2026-23554, CVE-2026-3055, CVE-2026-4368, CVE-2026-4397
Affected Products: Citrix ADM, Citrix Hypervisor, Citrix Virtual Apps and Desktops, Endpoint Management, NetScaler ADC, NetScaler Gateway, XenServer
citrix
CVE-2016-2789MEDIUMCVSS 6.1
CVE-2016-2789 [MEDIUM] Citrix Security Bulletin CTX207499
Citrix Security Bulletin CTX207499
CVE References: CVE-2016-2789, CVE-2025-12101, CVE-2025-62626, CVE-2026-23554, CVE-2026-3055, CVE-2026-4368, CVE-2026-4397
Affected Products: Citrix ADM, Citrix Hypervisor, Citrix Virtual Apps and Desktops, Endpoint Management, NetScaler ADC, NetScaler Gateway, XenServer
citrix
CVE-2023-24484MEDIUMCVSS 5.5
CVE-2023-24484 [MEDIUM] CWE-284 Citrix Workspace app for Windows Security Bulletin for CVE-2023-24484 & CVE-2023-24485
Citrix Workspace app for Windows Security Bulletin for CVE-2023-24484 & CVE-2023-24485
Vulnerability Type Pre-conditions CVE-2023-24484 A malicious user can cause log files to be written to a directory that they do not have permission to write to. CWE-284: Improper Access Control Local user access to a system where a vulnerable version of Citrix Workspace App for Windows is
citrix
CVE-2014-4346MEDIUMCVSS 4.3
CVE-2014-4346 [MEDIUM] Citrix Security Bulletin CTX140863
Citrix Security Bulletin CTX140863
CVE References: CVE-2014-4346, CVE-2014-4347, CVE-2025-12101, CVE-2025-62626, CVE-2026-23554, CVE-2026-3055, CVE-2026-4368, CVE-2026-4397
Affected Products: Citrix ADM, Citrix Hypervisor, Citrix Virtual Apps and Desktops, Endpoint Management, NetScaler ADC, NetScaler Gateway, XenServer
citrix
CVE-2016-5433MEDIUMCVSS 6.1
CVE-2016-5433 [MEDIUM] Citrix Security Bulletin CTX213998
Citrix Security Bulletin CTX213998
CVE References: CVE-2016-5433, CVE-2025-12101, CVE-2025-62626, CVE-2026-23554, CVE-2026-3055, CVE-2026-4368, CVE-2026-4397
Affected Products: Citrix ADM, Citrix Hypervisor, Citrix Virtual Apps and Desktops, Endpoint Management, NetScaler ADC, NetScaler Gateway, XenServer
citrix
CVE-2017-5571MEDIUMCVSS 6.1
CVE-2017-5571 [MEDIUM] CVE-2017-5571 - Open Redirect Vulnerability in Citrix License Server for Windows and Citrix License Server VPX
CVE-2017-5571 - Open Redirect Vulnerability in Citrix License Server for Windows and Citrix License Server VPX
of Problem An open redirect vulnerability has been identified in the Citrix License Server for Windows and the Citrix License Server VPX. This vulnerability could potentially be used to facilitate a phishing or social engineering attack. This vulnerabili
citrix
CVE-2007-4018MEDIUMCVSS 6.8
CVE-2007-4018 [MEDIUM] Citrix Security Bulletin CTX113816
Citrix Security Bulletin CTX113816
CVE References: CVE-2007-4018, CVE-2025-12101, CVE-2025-62626, CVE-2026-23554, CVE-2026-3055, CVE-2026-4368, CVE-2026-4397
Affected Products: Citrix ADM, Citrix Hypervisor, Citrix Virtual Apps and Desktops, Endpoint Management, NetScaler ADC, NetScaler Gateway, XenServer
citrix
CVE-2007-6477MEDIUMCVSS 4.3
CVE-2007-6477 [MEDIUM] Citrix Security Bulletin CTX115283
Citrix Security Bulletin CTX115283
CVE References: CVE-2007-6477, CVE-2025-12101, CVE-2025-62626, CVE-2026-23554, CVE-2026-3055, CVE-2026-4368, CVE-2026-4397
Affected Products: Citrix ADM, Citrix Hypervisor, Citrix Virtual Apps and Desktops, Endpoint Management, NetScaler ADC, NetScaler Gateway, XenServer
citrix
CVE-2007-3625MEDIUMCVSS 5.0
CVE-2007-3625 [MEDIUM] Citrix Security Bulletin CTX113543
Citrix Security Bulletin CTX113543
CVE References: CVE-2007-3625, CVE-2025-12101, CVE-2025-62626, CVE-2026-23554, CVE-2026-3055, CVE-2026-4368, CVE-2026-4397
Affected Products: Citrix ADM, Citrix Hypervisor, Citrix Virtual Apps and Desktops, Endpoint Management, NetScaler ADC, NetScaler Gateway, XenServer
citrix
CVE-2022-27509MEDIUMCVSS 6.1
CVE-2022-27509 [MEDIUM] CWE-345 Citrix ADC and Citrix Gateway Security Bulletin for CVE-2022-27509
Citrix ADC and Citrix Gateway Security Bulletin for CVE-2022-27509
CWE Pre-conditions CVE-2022-27509 Unauthenticated redirection to a malicious website CWE-345: Insufficient Verification of Data Authenticity Appliance must be configured as a VPN (Gateway) or AAA virtual server A victim user must use an attacker-crafted link The following supported versions of Citrix ADC and Citrix Gateway are affe
citrix
CVE-2016-0270MEDIUMCVSS 5.9
CVE-2016-0270 [MEDIUM] Citrix Security Bulletin CTX220329
Citrix Security Bulletin CTX220329
CVE References: CVE-2016-0270, CVE-2017-5933, CVE-2025-12101, CVE-2025-62626, CVE-2026-23554, CVE-2026-3055, CVE-2026-4368, CVE-2026-4397
Affected Products: Citrix ADM, Citrix Hypervisor, Citrix Virtual Apps and Desktops, Endpoint Management, NetScaler ADC, NetScaler Gateway, XenServer
citrix
CVE-2022-26355MEDIUMCVSS 4.4
CVE-2022-26355 [MEDIUM] CWE-668 Citrix Federated Authentication Service (FAS) Security Update
Citrix Federated Authentication Service (FAS) Security Update
Type Pre-requisites CVE-2022-26355 The registration authority certificate's private key is stored in ‘Microsoft Software Key Storage Provider’ even if the Trusted Platform Module was selected CWE-668: Exposure of Resource to Wrong Sphere Local Administrator access to the FAS server Certificates that were generated using the following version
citrix
CVE-2008-2300MEDIUMCVSS 6.5
CVE-2008-2300 [MEDIUM] Citrix Security Bulletin CTX116941
Citrix Security Bulletin CTX116941
CVE References: CVE-2008-2300, CVE-2025-12101, CVE-2025-62626, CVE-2026-23554, CVE-2026-3055, CVE-2026-4368, CVE-2026-4397
Affected Products: Citrix ADM, Citrix Hypervisor, Citrix Virtual Apps and Desktops, Endpoint Management, NetScaler ADC, NetScaler Gateway, XenServer
citrix
CVE-2009-2213MEDIUMCVSS 6.5
CVE-2009-2213 [MEDIUM] Citrix Security Bulletin CTX118770
Citrix Security Bulletin CTX118770
CVE References: CVE-2009-2213, CVE-2025-12101, CVE-2025-62626, CVE-2026-23554, CVE-2026-3055, CVE-2026-4368, CVE-2026-4397
Affected Products: Citrix ADM, Citrix Hypervisor, Citrix Virtual Apps and Desktops, Endpoint Management, NetScaler ADC, NetScaler Gateway, XenServer
citrix
CVE-2014-1663MEDIUMCVSS 5.0
CVE-2014-1663 [MEDIUM] Citrix Security Bulletin CTX140044
Citrix Security Bulletin CTX140044
CVE References: CVE-2014-1663, CVE-2025-12101, CVE-2025-62626, CVE-2026-23554, CVE-2026-3055, CVE-2026-4368, CVE-2026-4397
Affected Products: Citrix ADM, Citrix Hypervisor, Citrix Virtual Apps and Desktops, Endpoint Management, NetScaler ADC, NetScaler Gateway, XenServer
citrix