Vulnerability Description
NetScaler ADC 10.5, 11.0, 11.1, and 12.0, and NetScaler Gateway 10.5, 11.0, 11.1, and 12.0 allow remote attackers to download arbitrary files on the target system.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Citrix | Netscaler Application Delivery Controller Firmware | 10.5 |
| Citrix | Netscaler Application Delivery Controller | - |
| Citrix | Netscaler Gateway Firmware | 10.5 |
| Citrix | Netscaler Gateway | - |
Related Weaknesses (CWE)
References
- http://www.securitytracker.com/id/1040440Third Party AdvisoryVDB Entry
- https://support.citrix.com/article/CTX232161Vendor Advisory
- http://www.securitytracker.com/id/1040440Third Party AdvisoryVDB Entry
- https://support.citrix.com/article/CTX232161Vendor Advisory
FAQ
What is CVE-2018-6808?
CVE-2018-6808 is a vulnerability with a CVSS score of 7.5 (HIGH). NetScaler ADC 10.5, 11.0, 11.1, and 12.0, and NetScaler Gateway 10.5, 11.0, 11.1, and 12.0 allow remote attackers to download arbitrary files on the target system.
How severe is CVE-2018-6808?
CVE-2018-6808 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2018-6808?
Check the references section above for vendor advisories and patch information. Affected products include: Citrix Netscaler Application Delivery Controller Firmware, Citrix Netscaler Application Delivery Controller, Citrix Netscaler Gateway Firmware, Citrix Netscaler Gateway.