cbcvebase.

Citrix Xenserver vulnerabilities

228 known vulnerabilities affecting citrix/xenserver.

Total CVEs
228
CISA KEV
11
actively exploited
Public exploits
23
Exploited in wild
11
Severity breakdown
CRITICAL42HIGH82MEDIUM93LOW11

Vulnerabilities

Page 11 of 12
CVE-2014-1910MEDIUMCVSS 5.8
CVE-2014-1910 [MEDIUM] CVE-2014-1910 - SSL Certificate Validation Vulnerability in the Citrix ShareFile Mobile Application for Android and the Citrix ShareFile Mobile for Tablets Application for Android CVE-2014-1910 - SSL Certificate Validation Vulnerability in the Citrix ShareFile Mobile Application for Android and the Citrix ShareFile Mobile for Tablets Application for Android of Problem A vulnerability has been identified in the Citrix ShareFile Mobile application for Android and the Citrix
citrix
CVE-2013-2263MEDIUMCVSS 5.0
CVE-2013-2263 [MEDIUM] Citrix Security Bulletin CTX136623 Citrix Security Bulletin CTX136623 CVE References: CVE-2013-2263, CVE-2025-12101, CVE-2025-62626, CVE-2026-23554, CVE-2026-3055, CVE-2026-4368, CVE-2026-4397 Affected Products: Citrix ADM, Citrix Hypervisor, Citrix Virtual Apps and Desktops, Endpoint Management, NetScaler ADC, NetScaler Gateway, XenServer
citrix
CVE-2009-2214MEDIUMCVSS 5.0
CVE-2009-2214 [MEDIUM] Citrix Security Bulletin CTX121172 Citrix Security Bulletin CTX121172 CVE References: CVE-2009-2214, CVE-2025-12101, CVE-2025-62626, CVE-2026-23554, CVE-2026-3055, CVE-2026-4368, CVE-2026-4397 Affected Products: Citrix ADM, Citrix Hypervisor, Citrix Virtual Apps and Desktops, Endpoint Management, NetScaler ADC, NetScaler Gateway, XenServer
citrix
CVE-2015-2682MEDIUMCVSS 5.0PoC
CVE-2015-2682 [MEDIUM] Citrix Security Bulletin CTX200584 Citrix Security Bulletin CTX200584 CVE References: CVE-2015-2682, CVE-2015-2683, CVE-2025-12101, CVE-2025-62626, CVE-2026-23554, CVE-2026-3055, CVE-2026-4368, CVE-2026-4397 Affected Products: Citrix ADM, Citrix Hypervisor, Citrix Virtual Apps and Desktops, Endpoint Management, NetScaler ADC, NetScaler Gateway, XenServer
citrix
CVE-2006-4846MEDIUMCVSS 5.1
CVE-2006-4846 [MEDIUM] LDAP authentication vulnerability in Access Gateway Advanced Access Control LDAP authentication vulnerability in Access Gateway Advanced Access Control of Problem If the Advanced Access Control option (AAC) of Access Gateway is configured to use LDAP authentication then it is possible for a user to logon without supplying valid credentials. This vulnerability only affects AAC Version 4.2 deployments that are using LDAP authentication; Access Gateway deployments that do no
citrix
CVE-2013-6077MEDIUMCVSS 5.8
CVE-2013-6077 [MEDIUM] Citrix Security Bulletin CTX138627 Citrix Security Bulletin CTX138627 CVE References: CVE-2013-6077, CVE-2025-12101, CVE-2025-62626, CVE-2026-23554, CVE-2026-3055, CVE-2026-4368, CVE-2026-4397 Affected Products: Citrix ADM, Citrix Hypervisor, Citrix Virtual Apps and Desktops, Endpoint Management, NetScaler ADC, NetScaler Gateway, XenServer
citrix
CVE-2016-2789MEDIUMCVSS 6.1
CVE-2016-2789 [MEDIUM] Citrix Security Bulletin CTX207499 Citrix Security Bulletin CTX207499 CVE References: CVE-2016-2789, CVE-2025-12101, CVE-2025-62626, CVE-2026-23554, CVE-2026-3055, CVE-2026-4368, CVE-2026-4397 Affected Products: Citrix ADM, Citrix Hypervisor, Citrix Virtual Apps and Desktops, Endpoint Management, NetScaler ADC, NetScaler Gateway, XenServer
citrix
CVE-2023-24484MEDIUMCVSS 5.5
CVE-2023-24484 [MEDIUM] CWE-284 Citrix Workspace app for Windows Security Bulletin for CVE-2023-24484 & CVE-2023-24485 Citrix Workspace app for Windows Security Bulletin for CVE-2023-24484 & CVE-2023-24485 Vulnerability Type Pre-conditions CVE-2023-24484 A malicious user can cause log files to be written to a directory that they do not have permission to write to. CWE-284: Improper Access Control Local user access to a system where a vulnerable version of Citrix Workspace App for Windows is
citrix
CVE-2014-4346MEDIUMCVSS 4.3
CVE-2014-4346 [MEDIUM] Citrix Security Bulletin CTX140863 Citrix Security Bulletin CTX140863 CVE References: CVE-2014-4346, CVE-2014-4347, CVE-2025-12101, CVE-2025-62626, CVE-2026-23554, CVE-2026-3055, CVE-2026-4368, CVE-2026-4397 Affected Products: Citrix ADM, Citrix Hypervisor, Citrix Virtual Apps and Desktops, Endpoint Management, NetScaler ADC, NetScaler Gateway, XenServer
citrix
CVE-2016-5433MEDIUMCVSS 6.1
CVE-2016-5433 [MEDIUM] Citrix Security Bulletin CTX213998 Citrix Security Bulletin CTX213998 CVE References: CVE-2016-5433, CVE-2025-12101, CVE-2025-62626, CVE-2026-23554, CVE-2026-3055, CVE-2026-4368, CVE-2026-4397 Affected Products: Citrix ADM, Citrix Hypervisor, Citrix Virtual Apps and Desktops, Endpoint Management, NetScaler ADC, NetScaler Gateway, XenServer
citrix
CVE-2017-5571MEDIUMCVSS 6.1
CVE-2017-5571 [MEDIUM] CVE-2017-5571 - Open Redirect Vulnerability in Citrix License Server for Windows and Citrix License Server VPX CVE-2017-5571 - Open Redirect Vulnerability in Citrix License Server for Windows and Citrix License Server VPX of Problem An open redirect vulnerability has been identified in the Citrix License Server for Windows and the Citrix License Server VPX. This vulnerability could potentially be used to facilitate a phishing or social engineering attack. This vulnerabili
citrix
CVE-2007-4018MEDIUMCVSS 6.8
CVE-2007-4018 [MEDIUM] Citrix Security Bulletin CTX113816 Citrix Security Bulletin CTX113816 CVE References: CVE-2007-4018, CVE-2025-12101, CVE-2025-62626, CVE-2026-23554, CVE-2026-3055, CVE-2026-4368, CVE-2026-4397 Affected Products: Citrix ADM, Citrix Hypervisor, Citrix Virtual Apps and Desktops, Endpoint Management, NetScaler ADC, NetScaler Gateway, XenServer
citrix
CVE-2007-6477MEDIUMCVSS 4.3
CVE-2007-6477 [MEDIUM] Citrix Security Bulletin CTX115283 Citrix Security Bulletin CTX115283 CVE References: CVE-2007-6477, CVE-2025-12101, CVE-2025-62626, CVE-2026-23554, CVE-2026-3055, CVE-2026-4368, CVE-2026-4397 Affected Products: Citrix ADM, Citrix Hypervisor, Citrix Virtual Apps and Desktops, Endpoint Management, NetScaler ADC, NetScaler Gateway, XenServer
citrix
CVE-2007-3625MEDIUMCVSS 5.0
CVE-2007-3625 [MEDIUM] Citrix Security Bulletin CTX113543 Citrix Security Bulletin CTX113543 CVE References: CVE-2007-3625, CVE-2025-12101, CVE-2025-62626, CVE-2026-23554, CVE-2026-3055, CVE-2026-4368, CVE-2026-4397 Affected Products: Citrix ADM, Citrix Hypervisor, Citrix Virtual Apps and Desktops, Endpoint Management, NetScaler ADC, NetScaler Gateway, XenServer
citrix
CVE-2022-27509MEDIUMCVSS 6.1
CVE-2022-27509 [MEDIUM] CWE-345 Citrix ADC and Citrix Gateway Security Bulletin for CVE-2022-27509 Citrix ADC and Citrix Gateway Security Bulletin for CVE-2022-27509 CWE Pre-conditions CVE-2022-27509 Unauthenticated redirection to a malicious website CWE-345: Insufficient Verification of Data Authenticity Appliance must be configured as a VPN (Gateway) or AAA virtual server A victim user must use an attacker-crafted link The following supported versions of Citrix ADC and Citrix Gateway are affe
citrix
CVE-2016-0270MEDIUMCVSS 5.9
CVE-2016-0270 [MEDIUM] Citrix Security Bulletin CTX220329 Citrix Security Bulletin CTX220329 CVE References: CVE-2016-0270, CVE-2017-5933, CVE-2025-12101, CVE-2025-62626, CVE-2026-23554, CVE-2026-3055, CVE-2026-4368, CVE-2026-4397 Affected Products: Citrix ADM, Citrix Hypervisor, Citrix Virtual Apps and Desktops, Endpoint Management, NetScaler ADC, NetScaler Gateway, XenServer
citrix
CVE-2022-26355MEDIUMCVSS 4.4
CVE-2022-26355 [MEDIUM] CWE-668 Citrix Federated Authentication Service (FAS) Security Update Citrix Federated Authentication Service (FAS) Security Update Type Pre-requisites CVE-2022-26355 The registration authority certificate's private key is stored in ‘Microsoft Software Key Storage Provider’ even if the Trusted Platform Module was selected CWE-668: Exposure of Resource to Wrong Sphere Local Administrator access to the FAS server Certificates that were generated using the following version
citrix
CVE-2008-2300MEDIUMCVSS 6.5
CVE-2008-2300 [MEDIUM] Citrix Security Bulletin CTX116941 Citrix Security Bulletin CTX116941 CVE References: CVE-2008-2300, CVE-2025-12101, CVE-2025-62626, CVE-2026-23554, CVE-2026-3055, CVE-2026-4368, CVE-2026-4397 Affected Products: Citrix ADM, Citrix Hypervisor, Citrix Virtual Apps and Desktops, Endpoint Management, NetScaler ADC, NetScaler Gateway, XenServer
citrix
CVE-2009-2213MEDIUMCVSS 6.5
CVE-2009-2213 [MEDIUM] Citrix Security Bulletin CTX118770 Citrix Security Bulletin CTX118770 CVE References: CVE-2009-2213, CVE-2025-12101, CVE-2025-62626, CVE-2026-23554, CVE-2026-3055, CVE-2026-4368, CVE-2026-4397 Affected Products: Citrix ADM, Citrix Hypervisor, Citrix Virtual Apps and Desktops, Endpoint Management, NetScaler ADC, NetScaler Gateway, XenServer
citrix
CVE-2014-1663MEDIUMCVSS 5.0
CVE-2014-1663 [MEDIUM] Citrix Security Bulletin CTX140044 Citrix Security Bulletin CTX140044 CVE References: CVE-2014-1663, CVE-2025-12101, CVE-2025-62626, CVE-2026-23554, CVE-2026-3055, CVE-2026-4368, CVE-2026-4397 Affected Products: Citrix ADM, Citrix Hypervisor, Citrix Virtual Apps and Desktops, Endpoint Management, NetScaler ADC, NetScaler Gateway, XenServer
citrix