HTTP: Citrix ADC & Gateway Remote Code Execution

This signature detects attempts to exploit a known vulnerability against Citrix ADC & Gateway. A successful attack can lead to arbitrary code execution.

Extended Description

An issue was discovered in Citrix Application Delivery Controller (ADC) and Gateway 10.5, 11.1, 12.0, 12.1, and 13.0. They allow Directory Traversal.

Short Name
HTTP:DIR:CITRIX-ADC-GW-RCE
Severity
Major
Recommended
True
Recommended Action
Drop
Category
HTTP
Keywords
& ADC CVE-2019-19781 Citrix Code Execution Gateway Remote
Release Date
01/16/2020
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3377
False Positive
Unknown
CVSS Score

7.5

Found a potential security threat?