Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The web portal interface in Citrix Access Gateway (aka Citrix Advanced Access Control) before Advanced Edition 4.5 HF1 places a session ID in the URL, which allows context-dependent attackers to hijack sessions by reading "residual information", including the a referer log, browser history, or browser cache.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Citrix Access Gateway会话劫持漏洞
Vulnerability Description
Citrix Access Gateway一款通用的SSL VPN设备,为信息资源提供了安全且始终在线的单点接入支持。 远程攻击者可以利用Citrix Access Gateway客户端设备中所残留的信息获得对用户活动会话的非授权访问。
CVSS Information
N/A
Vulnerability Type
N/A