Reply to post: Unauth'd RCE

Patch now: Published Citrix applications leave networks of 'potentially 80,000' firms at risk from attackers

g-lock

Unauth'd RCE

This one scared the shit out of me when it dropped last week. Not much detail was forthcoming in the vulnerability writeup, but the mitigation is to put a Responder filter in to prevent what appears to be directory traversal. That would be pretty trivial to exploit.

POST COMMENT House rules

Not a member of The Register? Create a new account here.

  • Enter your comment

  • Add an icon

Anonymous cowards cannot choose their icon

SUBSCRIBE TO OUR WEEKLY TECH NEWSLETTER

Biting the hand that feeds IT © 1998–2020