cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2024-7890,https://securityvulnerability.io/vulnerability/CVE-2024-7890,Low-Privilege Escalation Threat Affects Citrix Workspace for Windows,"A local privilege escalation vulnerability exists in Citrix Workspace app for Windows, allowing low-privileged users to elevate their privileges to SYSTEM level. This issue could expose sensitive systems and data, offering attackers the ability to execute malicious actions as a privileged user. Organizations using affected versions should take immediate steps to apply security patches and mitigate potential risks associated with this vulnerability.",Citrix,Citrix Workspace App For Windows,7.3,HIGH,0.0004299999854993075,false,,false,false,false,,,false,false,,2024-09-11T22:32:17.479Z,0 CVE-2024-7889,https://securityvulnerability.io/vulnerability/CVE-2024-7889,Citrix Workspace app for Windows vulnerable to Local Privilege Escalation Attack,"A local privilege escalation vulnerability exists within the Citrix Workspace app for Windows, which could allow low-privileged users to elevate their privileges to that of a system user. This situation poses a significant risk to system integrity as unauthorized access could lead to potential exploitation of other security weaknesses within the operating environment. Proper patching and system checks are essential to mitigate these risks. Citrix has released guidance for users to address this vulnerability and reinforce security protocols.",Citrix,Citrix Workspace App For Windows,7.3,HIGH,0.0004299999854993075,false,,false,false,false,,,false,false,,2024-09-11T22:16:41.209Z,0 CVE-2024-6149,https://securityvulnerability.io/vulnerability/CVE-2024-6149,Citrix Workspace App Vulnerability Leads to Redirection to Malicious URL,Redirection of users to a vulnerable URL in Citrix Workspace app for HTML5,Citrix,Citrix Workspace App For Html5,,,0.0006099999882280827,false,,false,false,false,,,false,false,,2024-07-10T20:42:20.488Z,0 CVE-2024-6148,https://securityvulnerability.io/vulnerability/CVE-2024-6148,Citrix Workspace App Vulnerability Allows Bypass of GACS Policy Configuration Settings,"A vulnerability exists in Citrix Workspace app for HTML5 that enables an attacker to bypass GACS (Gateway Access Control Service) policy configuration settings. This flaw may allow unauthorized users to access sensitive resources. Proper management of GACS policies is critical to ensure that only authorized access to applications and data is maintained. Users of Citrix Workspace app are strongly advised to review their policy configurations and apply necessary updates to safeguard their systems. For detailed information regarding this vulnerability, refer to the official Citrix support article.",Citrix,Citrix Workspace App For Html5,8.8,HIGH,0.0005000000237487257,false,,false,false,false,,,false,false,,2024-07-10T20:40:07.129Z,0 CVE-2024-6286,https://securityvulnerability.io/vulnerability/CVE-2024-6286,Local Privilege Escalation Vulnerability in Citrix Workspace App for Windows,Local Privilege escalation allows a low-privileged user to gain SYSTEM privileges in Citrix Workspace app for Windows,Citrix,Citrix Workspace App For Windows,,,0.0004299999854993075,false,,false,false,false,,,false,false,,2024-07-10T20:25:21.414Z,0 CVE-2023-24486,https://securityvulnerability.io/vulnerability/CVE-2023-24486,Local user access to a system where another user is utilizing a vulnerable version of Citrix Workspace App for Linux to launch published desktops and applications,"A vulnerability has been identified in Citrix Workspace app for Linux that, if exploited, may result in a malicious local user being able to gain access to the Citrix Virtual Apps and Desktops session of another user who is using the same computer from which the ICA session is launched.",Citrix,Citrix Workspace App For Linux,5.5,MEDIUM,0.0004199999966658652,false,,false,false,false,,,false,false,,2023-07-10T21:15:00.000Z,0 CVE-2023-24485,https://securityvulnerability.io/vulnerability/CVE-2023-24485,Privilege Escalation on the system running a vulnerable version of Citrix Workspace app for Windows,"A vulnerability exists in the Citrix Workspace App for Windows that allows a standard user to execute operations with elevated SYSTEM privileges. This could potentially lead to unauthorized access and manipulation of sensitive system settings and data, posing significant security risks. Users of this application should promptly apply available patches to mitigate the risks associated with this vulnerability.",Citrix,Citrix Workspace App for Windows,7.8,HIGH,0.0004400000034365803,false,,false,false,false,,,false,false,,2023-02-16T00:00:00.000Z,0 CVE-2023-24484,https://securityvulnerability.io/vulnerability/CVE-2023-24484,A malicious user can cause log files to be written to a directory that they do not have permission to write to.,A malicious user can cause log files to be written to a directory that they do not have permission to write to.,Citrix,Citrix Workspace App for Windows,5.5,MEDIUM,0.0004400000034365803,false,,false,false,false,,,false,false,,2023-02-16T00:00:00.000Z,0 CVE-2022-21825,https://securityvulnerability.io/vulnerability/CVE-2022-21825,Improper Access Control Vulnerability in Citrix Workspace App for Linux,An improper access control vulnerability exists in the Citrix Workspace App for Linux that allows an attacker to escalate their privileges locally. This flaw affects versions 2012 through 2111 of the application when App Protection is installed. Exploiting this vulnerability could enable unauthorized users to gain elevated access to sensitive functions within the application.,Citrix,Citrix Workspace App For Linux,7.8,HIGH,0.0004199999966658652,false,,false,false,false,,,false,false,,2022-02-09T22:05:54.000Z,0 CVE-2021-22907,https://securityvulnerability.io/vulnerability/CVE-2021-22907,Improper Access Control in Citrix Workspace App for Windows,"An improper access control vulnerability in Citrix Workspace App for Windows could allow an attacker to escalate their privileges. This issue impacts versions prior to 2105 and the 1912 LTSR versions before CU4, thereby posing a risk to the application’s security framework. It is crucial for users to update to the latest versions to mitigate potential exploitation.",Citrix,Citrix Workspace App For Windows,7.8,HIGH,0.0004400000034365803,false,,false,false,false,,,false,false,,2021-05-27T11:14:17.000Z,0 CVE-2020-8207,https://securityvulnerability.io/vulnerability/CVE-2020-8207,Improper Access Control in Citrix Workspace App for Windows,"The Citrix Workspace app for Windows versions 1912 CU1 and 2006.1 exhibit an improper access control vulnerability that can lead to unauthorized privilege escalation and potential code execution. This vulnerability manifests when the automatic updater service is operational, allowing attackers to exploit it for malicious purposes. Ensuring proper access controls are enforced can mitigate the risks associated with this vulnerability.",Citrix,Citrix Workspace App For Windows,8.8,HIGH,0.0008800000068731606,false,,false,false,false,,,false,false,,2020-07-24T21:24:36.000Z,0 CVE-2020-13884,https://securityvulnerability.io/vulnerability/CVE-2020-13884,Insecure Permissions and Unquoted Path Vulnerability in Citrix Workspace App for Windows,"The Citrix Workspace App for Windows prior to version 1912 exhibits an Insecure Permissions and Unquoted Path vulnerability that could allow local users to escalate privileges. This security flaw occurs during the uninstallation process, potentially enabling unauthorized access to certain system resources. As a result, users may be exposed to various risks if they are not updated to a secure version of the application.",Citrix,Workspace App,7.8,HIGH,0.0004199999966658652,false,,false,false,true,2020-06-07T15:00:03.000Z,true,false,false,,2020-06-08T18:37:26.000Z,0 CVE-2020-13885,https://securityvulnerability.io/vulnerability/CVE-2020-13885,Insecure Permissions in Citrix Workspace App for Windows,"Citrix Workspace App for Windows prior to version 1912 contains a vulnerability that allows local users to exploit insecure permissions during the application’s uninstallation process. This security issue provides an opportunity for unauthorized privilege elevation, enabling users to perform actions that could compromise system integrity. It is essential for users to ensure their applications are up-to-date to mitigate potential risks associated with this vulnerability.",Citrix,Workspace App,7.8,HIGH,0.0004199999966658652,false,,false,false,true,2020-06-07T14:49:46.000Z,true,false,false,,2020-06-08T18:24:48.000Z,0