CVE Vulnerabilities

CVE-2020-10110

Published: Mar 06, 2020 | Modified: Apr 11, 2024
CVSS 3.x
5.3
MEDIUM
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu

Citrix Gateway 11.1, 12.0, and 12.1 allows Information Exposure Through Caching. NOTE: Citrix disputes this as not a vulnerability. There is no sensitive information disclosure through the cache headers on Citrix ADC. The Via header lists cache protocols and recipients between the start and end points for a request or a response. The Age header provides the age of the cached response in seconds. Both headers are commonly used for proxy cache and the information is not sensitive

Affected Software

Name Vendor Start Version End Version
Gateway_firmware Citrix 11.1 (including) 11.1 (including)
Gateway_firmware Citrix 12.0 (including) 12.0 (including)
Gateway_firmware Citrix 12.1 (including) 12.1 (including)

References