← voltar
CVE-2019-19781

CVE-2019-19781

CVSS 9.8 CRITICALEPSS 100.0%● KEVCWE-22
Em resumo

Versões do Citrix ADC e Gateway de 10.5 a 13.0 possuem uma falha que permite a um atacante navegar pelos diretórios do servidor e acessar arquivos que não deveria, expondo informações sensíveis do sistema.

Detalhe técnico

Uma vulnerabilidade de travessia de diretório no Citrix ADC/Gateway permite que atacantes remotos não autenticados contornem controles de acesso e leiam arquivos arbitrários no sistema afetado, manipulando caminhos de arquivo com sequências de travessia como (../). A falha afeta múltiplas versões e pode resultar em divulgação não autorizada de dados sensíveis.

Resumo gerado e traduzido por IA a partir da descrição oficial.
An issue was discovered in Citrix Application Delivery Controller (ADC) and Gateway 10.5, 11.1, 12.0, 12.1, and 13.0. They allow Directory Traversal.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Produtos afetados
n/a · n/a
PoCs públicas encontradas54
githubgithub.com/trustedsec/cve-2019-19781572githubgithub.com/projectzeroindia/CVE-2019-19781366githubgithub.com/mpgn/CVE-2019-19781158githubgithub.com/MalwareTech/CitrixHoneypot120githubgithub.com/cisagov/check-cve-2019-19781109githubgithub.com/mandiant/ioc-scanner-CVE-2019-1978194githubgithub.com/jas502n/CVE-2019-1978185githubgithub.com/citrix/ioc-scanner-CVE-2019-1978158githubgithub.com/aqhmal/CVE-2019-1978111githubgithub.com/w4fz5uck5/CVE-2019-19781-CitrixRCE10githubgithub.com/ianxtianxt/CVE-2019-197817githubgithub.com/VladRico/CVE-2019-197817githubgithub.com/unknowndevice64/Exploits_CVE-2019-197814githubgithub.com/k-fire/CVE-2019-19781-exploit3githubgithub.com/onSec-fr/CVE-2019-19781-Forensic3githubgithub.com/j81blog/ADC-197813githubgithub.com/oways/CVE-2019-197812githubgithub.com/DanielWep/CVE-NetScalerFileSystemCheck2githubgithub.com/andripwn/CVE-2019-197812githubgithub.com/Vulnmachines/Ctirix_RCE-CVE-2019-197811githubgithub.com/r4ulcl/CVE-2019-197811githubgithub.com/redscan/CVE-2019-197811githubgithub.com/nmanzi/webcvescanner1githubgithub.com/Azeemering/CVE-2019-19781-DFIR-Notes0githubgithub.com/tpdlshdmlrkfmcla/CVE-2019-197810githubgithub.com/zerobytesecure/CVE-2019-197810githubgithub.com/pwn3z/CVE-2019-19781-Citrix0githubgithub.com/becrevex/Citrix_CVE-2019-197810githubgithub.com/jamesjguthrie/Shitrix-CVE-2019-197810githubgithub.com/hollerith/CVE-2019-197810githubgithub.com/mekhalleh/citrix_dir_traversal_rce0githubgithub.com/zgelici/CVE-2019-19781-Checker0githubgithub.com/digitalshadows/CVE-2019-19781_IOCs0githubgithub.com/autocode07/cisagov__check-cve-2019-19781.4142e02b0githubgithub.com/0xams/citrixvulncheck0githubgithub.com/EliusHHimel/citrix-honeypot0githubgithub.com/darren646/CVE-2019-19781POC0githubgithub.com/Roshi99/Remote-Code-Execution-Exploit-for-Citrix-Application-Delivery-Controller-and-Citrix-Gateway-CVE-2010githubgithub.com/yukar1z0e/CVE-2019-197810githubgithub.com/SharpHack/CVE-2019-197810githubgithub.com/qiong-qi/CVE-2019-19781-poc0githubgithub.com/Castaldio86/Detect-CVE-2019-197810githubgithub.com/awesome-security/citrixmash_scanner0githubgithub.com/b510/CVE-2019-197810githubgithub.com/digitalgangst/massCitrix0githubgithub.com/L4r1k/CitrixNetscalerAnalysis0cve_referencepacketstormsecurity.com/files/155972/Citrix-ADC-Gateway-Path-Traversal.htmlnão verificadocve_referencepacketstormsecurity.com/files/155905/Citrix-Application-Delivery-Controller-Gateway-Remote-Code-Execution-Traversal.htmlnão verificadocve_referencepacketstormsecurity.com/files/155947/Citrix-ADC-NetScaler-Directory-Traversal-Remote-Code-Execution.htmlnão verificadocve_referencepacketstormsecurity.com/files/155904/Citrix-Application-Delivery-Controller-Gateway-Remote-Code-Execution.htmlnão verificadoexploitdbwww.exploit-db.com/exploits/47901não verificadoexploitdbwww.exploit-db.com/exploits/47913não verificadoexploitdbwww.exploit-db.com/exploits/47930não verificadocve_referencepacketstormsecurity.com/files/155930/Citrix-Application-Delivery-Controller-Gateway-10.5-Remote-Code-Execution.htmlnão verificado
⚠ Recursos públicos, para você avaliar a exposição de sistemas que controla ou está autorizado a testar. Teste apenas com autorização.

Quer saber se a sua infraestrutura está exposta a isto?

Falar com a TrueHacking →