Improper access control vulnerability in Citrix Workspace App - CVE-2023-24486 (dpkg)ID: oval:org.secpod.oval:def:89678 | Date: (C)2023-05-08 (M)2023-11-10 |
Class: VULNERABILITY | Family: unix |
The host is installed with Citrix Workspace App before 2302 and is prone to an improper access control vulnerability. A flaw is present in the application, which fails to handle issues in unspecified vectors. Successful exploitation allows a malicious local user to gain access to the Citrix Virtual Apps and desktops session of another user who is using the same computer from which the ICA session is launched.
Product: |
Citrix Workspace App |