APP: Citrix XenApp and XenDesktop XML Service Interface Remote Code Execution
This signature detects attempts to exploit a known vulnerability in Citrix XenApp and XenDesktop XML Service. A successful attack can lead to a stack overflow and arbitrary remote code execution within the context of the affected application.
Extended Description
Citrix XenApp and XenDesktop are prone to multiple remote code-execution vulnerabilities. An attacker can exploit these vulnerabilities to execute arbitrary code in the context of a service account on the vulnerable server. Failed exploit attempts will result in a denial-of-service condition. The following products are affected: XenApp version 6 and prior versions XenApp Fundamentals version 6 and prior versions XenDesktop 4 XenDesktop 4 with Feature Packs 1 XenDesktop 4 with Feature Packs 2
Affected Products
Citrix xenapp,Citrix xenapp_fundamentals
References
BugTraq: 48898
srx-branch-19.3
vsrx3bsd-19.2
srx-19.4
vsrx3bsd-19.4
srx-branch-19.4
vsrx-19.4
vsrx-19.2
srx-19.3
srx-branch-12.3
mx-12.3
mx-19.4
vmx-19.4
mx-19.3
vsrx-12.3
vmx-19.3
srx-12.3
Citrix