Insufficient verification of data authenticity in Citrix Netscaler ADC and Citrix Access Gateway - CVE-2022-27513
Published: November 8, 2022
Vulnerability details
The vulnerability allows a remote attacker to perform spoofing attack.
The vulnerability exists due to insufficient verification of data authenticity within RDP proxy. A remote attacker can gain control over users' RDP sessions via phishing attack.
Successful exploitation of the vulnerability requires the appliance to be configured as VPN (Gateway) and RDP proxy. Also attacker should have initial access to the network via SSL-VPN gateway.
Affected software
Citrix Access Gateway
How to mitigate CVE-2022-27513
Citrix Access Gateway - addressed in versions 12.1.65.21, 13.0-88.12, 13.1-33.47