Exploited Vulnerabilities Daily
🌐 日本語

ホーム › Citrix

CVE-2022-27518: Citrix Application Delivery Controller (ADC) and Gateway

EPSS6.6%KEV 1739件中1371位
CVEの年2022同じ年に追加
同じベンダーの登録27
同じ製品の登録1
項目内容
ベンダーCitrix
製品Application Delivery Controller (ADC) and Gateway
脆弱性の名前Citrix Application Delivery Controller (ADC) and Gateway Authentication Bypass Vulnerability
KEVへの追加日2022年12月13日
米政府機関の対応期限2023年1月3日
ランサムウェアでの悪用不明
CWECWE-664

CISAの説明(英語)

Citrix Application Delivery Controller (ADC) and Gateway, when configured with SAML SP or IdP configuration, contain an authentication bypass vulnerability that allows an attacker to execute code as administrator.

NVD — CVE-2022-27518

CISAの既知の悪用された脆弱性カタログ(KEV)のデータです。EPSSはFIRSTが公表する「今後30日以内に悪用が観測される確率」の推定値で、週1回更新しています。対応は必ず各ベンダーの公式情報に従ってください。
このページについて

2022年12月13日にCISAの既知の悪用された脆弱性カタログ(KEV)に追加された、CitrixのApplication Delivery Controller (ADC) and Gatewayの脆弱性です。