CVE-2023-24490 - CVE House
Back to Database
Status published Medium CVE-2023-24490

Users with only access to launch VDA applications can launch an unauthorized desktop

Affected Vendor

Affected Software

Virtual Delivery Agents for Windows for CVAD and Citrix DaaS Security, Virtual Delivery Agents for Linux for CVAD and Citrix DaaS Security
Vulnerable Versions:
Current Release (CR) 0, Long Term Service Release (LTSR) 0

Timeline

Official Publish: July 10th, 2023
Last Modified: October 23rd, 2024
Added to House: July 22nd, 2026

CVSS Vectors

V3: CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L

Weaknesses (CWE)