CISA Known Exploited Vulnerability

CVE-2019-13608 Ransomware

Citrix · StoreFront Server

Citrix StoreFront Server XML External Entity (XXE) Processing Vulnerability

Date added
BOD 22-01 due date
CWE CWE-611
Ransomware Known

CISA description

Citrix StoreFront Server contains an XML External Entity (XXE) processing vulnerability that may allow an unauthenticated attacker to retrieve potentially sensitive information.

Required action

Apply updates per vendor instructions.