Results 1 to 4 of 4

Thread: Citrix vuln

Hybrid View

  1. #1
    Frustrated Mad Scientist
    Join Date
    Dec 2004
    Posts
    1,152

    Citrix vuln

    http://support.citrix.com/article/CTX112589

    http://secunia.com/advisories/24350/

    Trying to understand how this exploit actually works!

    If a user witha Citrix desktop using IE through it hits a contaminated page where does the exploit attack?

    Does it run on the remote desktop of the users or does it attack the Citrix server?

    Citrix is a bit of a mystery to me, it's in the office but I never use it. Just trying to identify how much of an issue this is to us.

    TIA

  2. #2
    Banned
    Join Date
    Jul 2006
    Location
    /
    Posts
    385
    Quote Originally Posted by Aspman
    http://support.citrix.com/article/CTX112589

    http://secunia.com/advisories/24350/

    Trying to understand how this exploit actually works!

    If a user witha Citrix desktop using IE through it hits a contaminated page where does the exploit attack?

    Does it run on the remote desktop of the users or does it attack the Citrix server?

    Citrix is a bit of a mystery to me, it's in the office but I never use it. Just trying to identify how much of an issue this is to us.

    TIA
    Description:
    A vulnerability has been reported in Citrix Presentation Server Client, which potentially can be exploited by malicious people to compromise a user's system.
    it uses the vuln in the presentation server client to hit the actual user system..

    i'm using above 10.0 and this only affects 10.0 and prior, wouldn't think to many people would be using a prior version, but i guess it's a matter of waiting and seeing just how many get hit..

    cheers
    acidtone..

  3. #3
    Frustrated Mad Scientist
    Join Date
    Dec 2004
    Posts
    1,152
    We've got about 30 users on V9.x

  4. #4
    Banned
    Join Date
    Jul 2006
    Location
    /
    Posts
    385
    Quote Originally Posted by Aspman
    We've got about 30 users on V9.x
    Ouch.. I'd hate to see what would happen if you got hit.

Similar Threads

  1. W2K Terminal Servers / Citrix
    By dinowuff in forum The Security Tutorials Forum
    Replies: 2
    Last Post: December 4th, 2003, 04:40 PM
  2. possible citrix nightmare
    By MidNyte in forum Newbie Security Questions
    Replies: 9
    Last Post: October 2nd, 2003, 03:54 PM
  3. Unicode Vuln, How Its Hacked, How Its Used, How To See and FIX
    By sectac in forum The Security Tutorials Forum
    Replies: 1
    Last Post: May 25th, 2003, 02:13 PM
  4. Help me understand what Citrix does & how to secure it
    By z0mbi3 in forum Newbie Security Questions
    Replies: 3
    Last Post: March 7th, 2003, 12:00 PM
  5. Opera vuln gives up local files
    By blackh0le in forum Microsoft Security Discussions
    Replies: 1
    Last Post: May 29th, 2002, 11:01 PM

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •