Citrix XenApp 6.5, when 2FA is enabled, allows a remote unauthenticated attacker to ascertain whether a user exists on the server, because the 2FA error page only occurs after a valid username is entered. NOTE: This vulnerability only affects products that are no longer supported by the maintainer
Advisories

No advisories yet.

Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-04T12:32:14.840Z

Reserved: 2020-06-09T00:00:00

Link: CVE-2020-13998

cve-icon Vulnrichment

Updated: 2024-08-04T12:32:14.840Z

cve-icon NVD

Status : Modified

Published: 2020-06-11T02:15:10.713

Modified: 2024-11-21T05:02:19.037

Link: CVE-2020-13998

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.