Lucene search

K
nvd[email protected]NVD:CVE-2023-24484
HistoryFeb 16, 2023 - 6:15 p.m.

CVE-2023-24484

2023-02-1618:15:11
CWE-284
web.nvd.nist.gov
9
malicious user
log files
unauthorized writing

CVSS3

5.5

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

HIGH

Availability Impact

NONE

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N

AI Score

5.4

Confidence

High

EPSS

0

Percentile

13.2%

A malicious user can cause log files to be written to a directory that they do not have permission to write to.

Affected configurations

Nvd
Node
citrixworkspaceRange<2212-windows
OR
citrixworkspaceMatch1912-ltsrwindows
OR
citrixworkspaceMatch1912cu1ltsrwindows
OR
citrixworkspaceMatch1912cu1-hf1ltsrwindows
OR
citrixworkspaceMatch1912cu2ltsrwindows
OR
citrixworkspaceMatch1912cu3ltsrwindows
OR
citrixworkspaceMatch1912cu4ltsrwindows
OR
citrixworkspaceMatch1912cu5ltsrwindows
OR
citrixworkspaceMatch1912cu6ltsrwindows
OR
citrixworkspaceMatch2203.1-ltsrwindows
OR
citrixworkspaceMatch2203.1cu1ltsrwindows
VendorProductVersionCPE
citrixworkspace*cpe:2.3:a:citrix:workspace:*:*:*:*:-:windows:*:*
citrixworkspace1912cpe:2.3:a:citrix:workspace:1912:-:*:*:ltsr:windows:*:*
citrixworkspace1912cpe:2.3:a:citrix:workspace:1912:cu1:*:*:ltsr:windows:*:*
citrixworkspace1912cpe:2.3:a:citrix:workspace:1912:cu1-hf1:*:*:ltsr:windows:*:*
citrixworkspace1912cpe:2.3:a:citrix:workspace:1912:cu2:*:*:ltsr:windows:*:*
citrixworkspace1912cpe:2.3:a:citrix:workspace:1912:cu3:*:*:ltsr:windows:*:*
citrixworkspace1912cpe:2.3:a:citrix:workspace:1912:cu4:*:*:ltsr:windows:*:*
citrixworkspace1912cpe:2.3:a:citrix:workspace:1912:cu5:*:*:ltsr:windows:*:*
citrixworkspace1912cpe:2.3:a:citrix:workspace:1912:cu6:*:*:ltsr:windows:*:*
citrixworkspace2203.1cpe:2.3:a:citrix:workspace:2203.1:-:*:*:ltsr:windows:*:*
Rows per page:
1-10 of 111

CVSS3

5.5

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

HIGH

Availability Impact

NONE

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N

AI Score

5.4

Confidence

High

EPSS

0

Percentile

13.2%