CVE-2016-5302

Citrix XenServer 7.0 before Hotfix XS70E003, when a deployment has been upgraded from an earlier release, might allow remote attackers on the management network to "compromise" a host by leveraging credentials for an Active Directory account.
Configurations

Configuration 1 (hide)

cpe:2.3:a:citrix:xenserver:*:*:*:*:*:*:*:*

History

21 Nov 2024, 02:54

Type Values Removed Values Added
References () http://support.citrix.com/article/CTX213549 - Vendor Advisory () http://support.citrix.com/article/CTX213549 - Vendor Advisory
References () http://www.securitytracker.com/id/1036082 - () http://www.securitytracker.com/id/1036082 -
References () https://support.citrix.com/article/CTX213769 - () https://support.citrix.com/article/CTX213769 -

Information

Published : 2016-06-13 14:59

Updated : 2024-11-21 02:54


NVD link : CVE-2016-5302

Mitre link : CVE-2016-5302

CVE.ORG link : CVE-2016-5302


JSON object : View

Products Affected

citrix

  • xenserver
CWE
CWE-284

Improper Access Control