Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
CITRIX Metaframe 1.8 logs the Client Address (IP address) that is provided by the client instead of obtaining it from the packet headers, which allows clients to spoof their public IP address, e.g. through Network Address Translation (NAT).
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Citrix MetaFrame接受虚假IP地址漏洞
Vulnerability Description
CVE(CAN) ID: CAN-2001-0908 Citrix MetaFrame是终端服务环境下的一个应用服务器程序。 Citrix MetaFrame存在一个问题,用户可以使之记录一个虚假的IP地址。 当一个客户机连接的时候,客户机的名字和网络地址作为ICA协议的一部分被传送给服 务器。而服务器记录的就是这些客户机提供过来的信息,而不是从操作系统的TCP/IP实 现中得到客户机的网络地址。
CVSS Information
N/A
Vulnerability Type
N/A