Page 2 of 8 results (0.003 seconds)

CVSS: 5.0EPSS: 1%CPEs: 3EXPL: 0

Citrix MetaFrame 1.8 Server with Service Pack 3, and XP Server Service Pack 1 and earlier, allows remote attackers to cause a denial of service (crash) via a large number of incomplete connections to the server. • http://www.securityfocus.com/bid/3440 http://xforce.iss.net/alerts/advise99.php https://exchange.xforce.ibmcloud.com/vulnerabilities/7068 •

CVSS: 7.5EPSS: 3%CPEs: 1EXPL: 0

CITRIX Metaframe 1.8 logs the Client Address (IP address) that is provided by the client instead of obtaining it from the packet headers, which allows clients to spoof their public IP address, e.g. through Network Address Translation (NAT). • http://marc.info/?l=bugtraq&m=100638693315933&w=2 http://www.securityfocus.com/bid/3566 https://exchange.xforce.ibmcloud.com/vulnerabilities/7538 •

CVSS: 10.0EPSS: 0%CPEs: 4EXPL: 2

The Citrix ICA (Independent Computing Architecture) protocol uses weak encryption (XOR) for user authentication. • https://www.exploit-db.com/exploits/19821 http://www.securityfocus.com/bid/1077 http://www.securityfocus.com/templates/archive.pike?list=1&msg=Pine.BSO.4.20.0003290949280.2640-100000%40naughty.monkey.org •