S4E just found a high-severity finding from top 10 tcp port service scan
PlatformPlansPartners
Resources
ToolsBlogDocs
Sign Up →
critical·Product Based Web Vulnerabilities·Updated Jan 29, 2024

CVE-2019-12987 Scanner

CVE-2019-12987 scanner - Remote Code Execution (RCE) vulnerability in Citrix SD-WAN Center

Est. Time~10 seconds
Scan TypeSingle Scan
Targetsdomain, ipv4, subdomain
CostFree
3.2k
Times Used
continuous scan runs
4.4k
Continuously Checked
assets under CS
0
Vulnerabilities Found
confirmed findings
References
CVECVE-2019-12987
9.8
CVSS

Citrix SD-WAN 10.2.x before 10.2.3 and NetScaler SD-WAN 10.0.x before 10.0.8 have Improper Input Validation (issue 3 of 6).

Attack Vector
-
Privileges Req.
-
User Interaction
-
Affected
n/aby n/a
n/a
Updated Aug 21, 2026View on NVD →
Detail

Citrix SD-WAN Center is a centralized platform used for managing software-defined wide area network (SD-WAN) architecture. It allows administrators to monitor and control the performance of network connections, applications, and devices across the organization. The primary purpose of this platform is to enhance the network's performance, reduce downtime, and increase user productivity.

Recently, a vulnerability identified as CVE-2019-12987 was detected in Citrix SD-WAN 10.2.x and NetScaler SD-WAN 10.0.x. This vulnerability occurs due to improper input validation of user-supplied parameters, which enables attackers to execute arbitrary code with elevated privileges.

Exploiting CVE-2019-12987 can lead to serious consequences for organizations using Citrix SD-WAN Center. An attacker can gain access to sensitive data transmitted through the network, perform unauthorized actions, launch attacks against other devices, and disrupt business operations. The vulnerability can also facilitate remote code execution and a complete takeover of the vulnerable system.

Thanks to the pro features of the s4e.io platform, those who read this article can easily and quickly learn about vulnerabilities in their digital assets. The platform provides up-to-date information on vulnerabilities, exploits, and patches for various software and devices. It also offers vulnerability scanning and analysis tools, risk assessment reports, and customized alerts. By using this platform, organizations can proactively improve their security posture and enhance their resilience against cyber threats.

 

REFERENCES

Solution Advice

To prevent the exploitation of CVE-2019-12987, Citrix has released a patch on versions 10.2.3 and 10.0.8. The following precautions can also be taken:

  • Install the latest update
  • Restrict network access to the Citrix SD-WAN Center management interface
  • Deploy perimeter security measures such as firewall rules and intrusion detection systems
  • Regularly monitor network activity and system logs
  • Educate employees on cybersecurity best practices and report any suspicious activity or incidents.

Get AI-powered remediation steps tailored to your asset.

Try AI Solutions →

Check your infrastructure.
Right now.

11,000+ scanners. Free to start. No credit card required.

CVE-2019-12987 scanner - Remote Code Execution (RCE) vulnerability in Citrix SD-WAN Center | S4E