News

Latest news about B2B cyber security >>> PR agencies: add us to your mailing list - see contact! >>> Book an exclusive PartnerChannel for your news!

XenServer and Citrix Hypervisor vulnerabilities
B2B Cyber ​​Security ShortNews

Citrix warns of two vulnerabilities in XenServer and Citrix Hypervisor. The security vulnerabilities are only moderately serious, but a quick update is still recommended. Citrix already provides hotfixes for this. According to Citrix, two issues have been identified affecting XenServer and Citrix Hypervisor. A vulnerability could allow unprivileged code in a guest VM to access the memory contents of its own VM or other VMs on the same host. This can result in data or access data being stolen. Memory contents of other VMs can be copied Citrix presents the issues under the following CVE identifiers: CVE-2024-2201 and CVE-2024-31142. However…

Read more

BSI: Vulnerability with 9.4 in Citrix NetScaler ADC and Gateway 
B2B Cyber ​​Security ShortNews

The BSI has issued a critical warning about a CVSS 9.4 vulnerability for the products Citrix NetScaler Application Delivery Controller and NetScaler Gateway. The vulnerability gives attackers access to sensitive information without authentication. According to specialist Mandiant, the vulnerability has been exploited for a long time. According to the BSI, the manufacturer Citrix published an advisory on vulnerabilities in the products NetScaler Application Delivery Controller (formerly Citrix ADC) and NetScaler Gateway (formerly Citrix Gateway) on October 10, 2023. The one critical security vulnerability is identified according to Common Vulnerabilities and Exposures (CVE) under the...

Read more

Vulnerability in Citrix ShareFile
B2B Cyber ​​Security ShortNews

Tenable Research has discovered a current security vulnerability in Citrix - specifically in Citrix ShareFile. If this vulnerability is exploited, an attacker could steal credentials or tokens, execute code in the context of the victim's browser, or perform a variety of other dangerous actions. Despite the potential impact of the vulnerability, Citrix has chosen not to release information about this issue or notify customers after the issue has been patched. Customers are completely dependent on the cloud providers to resolve the reported issues and must blindly trust that…

Read more

BSI warns: Citrix ADC with critical 9.8 vulnerability
B2B Cyber ​​Security ShortNews

The BSI - Federal Office for Information Security - reports an active exploitation of a vulnerability in the Citrix Application Delivery Controller (ADC). The vulnerability managed with the CVE-2023-3519 has a CVSS value of 9.8 out of 10 and is critical! An update is available. On 18.07.2023/2023/3519 the manufacturer Citrix announced a critical vulnerability in the products NetScaler ADC (formerly Citrix ADC) and NetScaler Gateway (formerly Citrix Gateway). The vulnerability is listed under the number CVE-9.8-XNUMX according to Common Vulnerabilities and Exposures (CVE) and has a score of XNUMX according to CVSS.

Read more