S4E just found a high-severity finding from top 10 tcp port service scan
PlatformPlansPartners
Resources
ToolsBlogDocs
Sign Up →
medium·Product Based Web Vulnerabilities·Updated Jan 8, 2024

CVE-2020-8193 Scanner

CVE-2020-8193 scanner - Improper Access Control vulnerability in Citrix ADC, Citrix Gateway, Citrix SDWAN WAN-OP

Est. Time~30 seconds
Scan TypeSingle Scan
Targetsurl
CostFree
2.3k
Times Used
continuous scan runs
4.7k
Continuously Checked
assets under CS
0
Vulnerabilities Found
confirmed findings
References
🔴
CISA Known Exploited Vulnerability
This CVE is actively exploited in the wild. CISA mandates federal agencies to patch immediately.
CVECVE-2020-8193
6.5
CVSSmedium
Exploitable remotely over the internet · no authentication required.

Improper access control in Citrix ADC and Citrix Gateway versions before 13.0-58.30, 12.1-57.18, 12.0-63.21, 11.1-64.14 and 10.5-70.18 and Citrix SDWAN WAN-OP versions before 11.1.1a, 11.0.3d and 10.2.7 allows unauthenticated access to certain URL endpoints.

Attack Vector
Network
Privileges Req.
None
User Interaction
None
Affected
Citrix ADC, Citrix Gateway, Citrix SDWAN WAN-OPby n/a
Citrix ADC and Citrix Gateway 13.0-58.30, 12.1-57.18, 12.0-63.21, 11.1-64.14 and 10.5-70.18 and Citrix SDWAN WAN-OP 11.1.1a, 11.0.3d and 10.2.7
Updated Aug 21, 2026View on NVD →
Detail

Citrix is a widely-used software platform that offers a range of services such as remote application delivery, desktop virtualization, networking, and cloud computing. Amongst the many products offered by Citrix, the Citrix ADC, Citrix Gateway, and Citrix SDWAN WAN-OP are some of the most popular ones. The Citrix ADC (formerly referred to as NetScaler ADC) is an application delivery controller that enables secure and optimized delivery of web and mobile applications. The Citrix Gateway (formerly known as NetScaler Gateway) is a secure remote access solution that offers secure and seamless access to applications and data from anywhere, on any device. The Citrix SDWAN WAN-OP is an SD-WAN solution that automates and dynamically routes WAN traffic to the cloud. 

One of the most severe vulnerabilities, CVE-2020-8193, has been detected in Citrix ADC, Citrix Gateway and Citrix SDWAN WAN-OP. Specifically, this vulnerability has been found in versions before 13.0-58.30, 12.1-57.18, 12.0-63.21, 11.1-64.14, and 10.5-70.18 for Citrix ADC, Citrix Gateway, and versions before 11.1.1a, 11.0.3d, and 10.2.7 for Citrix SDWAN WAN-OP. This vulnerability relates to improper access control, due to which unauthenticated access to certain URL endpoints is allowed. The vulnerability allows attackers to steal sensitive information from the network.

When exploited, this vulnerability can cause significant harm, including data theft, network surveillance, supply chain disruption, and more. Attackers can exploit this vulnerability to gain unauthorized access to the network, launch denial-of-service attacks, disrupt business operations, and steal critical data. The vulnerability can allow attackers to bypass security controls, including firewalls, intrusion prevention systems, and content filters.  This can lead to theft of confidential data, loss of data, damage to reputation, and financial losses.

Thanks to the pro features of the s4e.io platform, those who read this article can easily and quickly learn about vulnerabilities in their digital assets. The platform offers comprehensive vulnerability scanning services and detailed reports on the vulnerabilities found. By leveraging the platform’s powerful APIs, users can also automate the remediation process and ensure that their digital assets are secure at all times. With s4e.io, users can rest assured that their systems and networks are safe from potential threats and can continue to focus on their core business operations without any interruptions.

 

REFERENCES

Solution Advice

To protect against this vulnerability, the following precautions can be taken:

  • Update all Citrix ADC, Gateway, and SDWAN platforms to the latest versions released by Citrix.
  • Restrict access to network endpoints to only trusted sources.
  • Implement two-factor authentication for all external connections.
  • Deploy firewalls, intrusion detection/prevention systems, content filters, and other security controls to monitor and control network traffic.
  • Conduct regular vulnerability scans and penetration testing to uncover potential vulnerabilities.

Get AI-powered remediation steps tailored to your asset.

Try AI Solutions →

Check your infrastructure.
Right now.

11,000+ scanners. Free to start. No credit card required.

CVE-2020-8193 scanner - Improper Access Control vulnerability in Citrix ADC, Citrix Gateway, Citrix SDWAN WAN-OP | S4E