Skip to main content

Configuration

CVE-2009-2213

Severity Medium
Score 6.3/10

Summary

The default configuration of the Security global settings on the Citrix NetScaler Access Gateway appliance with Enterprise Edition firmware 9.0, 8.1, and earlier specifies Allow for the Default Authorization Action option, which might allow remote authenticated users to bypass intended access restrictions.

  • MEDIUM
  • NETWORK
  • SINGLE
  • NONE
  • COMPLETE
  • NONE

CWE-16 - Configuration

Weaknesses in this category are typically introduced during the configuration of the software.

References

Advisory Timeline

  • Published