Vulnerability Description
The Administrative Web Interface in Citrix NetScaler Application Delivery Controller (ADC) and NetScaler Gateway 11.x before 11.0 Build 64.34, 10.5 before 10.5 Build 59.13, 10.5.e before Build 59.1305.e, and 10.1 allows remote attackers to conduct clickjacking attacks via unspecified vectors.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Citrix | Netscaler Application Delivery Controller | - |
| Citrix | Netscaler | 10.1 |
| Citrix | Netscaler Gateway | - |
Related Weaknesses (CWE)
References
- http://support.citrix.com/article/CTX206001Vendor Advisory
- http://www.securitytracker.com/id/1035098
- http://support.citrix.com/article/CTX206001Vendor Advisory
- http://www.securitytracker.com/id/1035098
FAQ
What is CVE-2016-2072?
CVE-2016-2072 is a vulnerability with a CVSS score of 6.1 (MEDIUM). The Administrative Web Interface in Citrix NetScaler Application Delivery Controller (ADC) and NetScaler Gateway 11.x before 11.0 Build 64.34, 10.5 before 10.5 Build 59.13, 10.5.e before Build 59.1305...
How severe is CVE-2016-2072?
CVE-2016-2072 has been rated MEDIUM with a CVSS base score of 6.1/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2016-2072?
Check the references section above for vendor advisories and patch information. Affected products include: Citrix Netscaler Application Delivery Controller, Citrix Netscaler, Citrix Netscaler Gateway.