CVE-2017-6316

Citrix Multiple Products Remote Code Execution Vulnerability

9.8
CVSS 3.1
73.0 %
EPSS (current)
2022-03-25
KEV addition
No
Ransomware

Timeline

Publication, first public exploit and KEV addition on a day axis.

Key facts

Vendor / product: Citrix / NetScaler SD-WAN Enterprise, CloudBridge Virtual WAN, and XenMobile Server

Published: 2017-07-20 · Due (CISA): 2022-04-15

CWE: – · EU list: no

Exploit references (metadata only)

SourceReferenceTitleDate
exploitdb42346Citrix CloudBridge - 'CAKEPHP' Cookie Command Injection2017-07-19
exploitdb42345Netscaler SD-WAN 9.1.2.26.561201 - Command Injection (Metasploit)2017-07-19

References only — no downloads or instructions.

Sources