CVE-2001-0716
https://notcve.org/view.php?id=CVE-2001-0716
Citrix MetaFrame 1.8 Server with Service Pack 3, and XP Server Service Pack 1 and earlier, allows remote attackers to cause a denial of service (crash) via a large number of incomplete connections to the server. • http://www.securityfocus.com/bid/3440 http://xforce.iss.net/alerts/advise99.php https://exchange.xforce.ibmcloud.com/vulnerabilities/7068 •
CVE-2001-0908
https://notcve.org/view.php?id=CVE-2001-0908
CITRIX Metaframe 1.8 logs the Client Address (IP address) that is provided by the client instead of obtaining it from the packet headers, which allows clients to spoof their public IP address, e.g. through Network Address Translation (NAT). • http://marc.info/?l=bugtraq&m=100638693315933&w=2 http://www.securityfocus.com/bid/3566 https://exchange.xforce.ibmcloud.com/vulnerabilities/7538 •
CVE-2001-0760 – Citrix Nfuse 1.51 - Webroot Disclosure
https://notcve.org/view.php?id=CVE-2001-0760
Citrix Nfuse 1.51 allows remote attackers to obtain the absolute path of the web root via a malformed request to launch.asp that does not provide the session field. Citrix Nfuse 1.51 permite a atacantes remotos obtener la ruta absoluta de la raíz del web mediante una petición malformada que no provee el campo de sesión. • https://www.exploit-db.com/exploits/20987 http://www.securityfocus.com/archive/1/194449 http://www.securityfocus.com/archive/1/194522 http://www.securityfocus.com/bid/2956 https://exchange.xforce.ibmcloud.com/vulnerabilities/6786 •
CVE-2000-0244 – Citrix Metaframe 1.0/1.8 - Weak Encryption
https://notcve.org/view.php?id=CVE-2000-0244
The Citrix ICA (Independent Computing Architecture) protocol uses weak encryption (XOR) for user authentication. • https://www.exploit-db.com/exploits/19821 http://www.securityfocus.com/bid/1077 http://www.securityfocus.com/templates/archive.pike?list=1&msg=Pine.BSO.4.20.0003290949280.2640-100000%40naughty.monkey.org •