Phying News
Curated security research, vulnerabilities, advisories and tools for practitioners.

[CVE-2020-8209] Path Traversal on Citrix XenMobile Server

Summary

CVE-2020-8209 in Citrix XenMobile Server: a path traversal in help-sb-download.jsp lets unauthenticated attackers read arbitrary files — including sftu.properties with encrypted passwords and the key files needed to decrypt them.
Published
Collected

original ↗

Related coverage

back