Citrix XenApp 6.5, when 2FA is enabled, allows a remote unauthenticated attacker to ascertain whether a user exists on the server, because the 2FA error page only occurs after a valid username is entered. NOTE: This vulnerability only affects products that are no longer supported by the maintainer
Metrics
Affected Vendors & Products
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-04T12:32:14.840Z
Reserved: 2020-06-09T00:00:00
Link: CVE-2020-13998
Updated: 2024-08-04T12:32:14.840Z
Status : Modified
Published: 2020-06-11T02:15:10.713
Modified: 2024-11-21T05:02:19.037
Link: CVE-2020-13998
No data.
OpenCVE Enrichment
No data.