www.belgium.be Logo of the federal government

Warning: Authentication Bypass Vulnerability in CITRIX ADC and Gateway

Referentie: 
Advisory #2022-038
Versie: 
1.0
Geïmpacteerde software: 
Citrix ADC and Citrix Gateway 13.1 before 13.1-33.47
Citrix ADC and Citrix Gateway 13.0 before 13.0-88.12
Citrix ADC and Citrix Gateway 12.1 before 12.1.65.21
Citrix ADC 12.1-FIPS before 12.1-55.289
Citrix ADC 12.1-NDcPP before 12.1-55.289
Type: 
Authentication Bypass
CVE/CVSS: 

CVE-2022-27510 (CVSSv3 : 9.8/10)

Bronnen

https://support.citrix.com/article/CTX463706/citrix-gateway-and-citrix-adc-security-bulletin-for-cve202227510-cve202227513-and-cve202227516

Risico’s

Citrix has released security updates to address a critical authentication bypass vulnerability, CVE-2022-27510, affecting Citrix ADC and Citrix Gateway.  A remote attacker could exploit this vulnerability to bypass authentication and acquire access to Gateway user capabilities by using an alternate path or channel.

This vulnerability is of low complexity and does not requires user interaction. In addition, this flaw could have a high impact on confidentiality, integrity and availability.

Beschrijving

This authentication bypass vulnerability using an alternate path or channel can only be exploited by an attacker if the appliance is set up as secure socket layer virtual private network (SSL VPN).  Authentication bypass vulnerabilities like this one could be exploited by an attacker as an initial access vector into a network.

Aanbevolen acties

The CCB recommends customer-managed Citrix ADC and Citrix Gateway appliances to install updated versions with the highest priority, after thorough testing. Detailed instructions can be found on: Citrix security bulletin.

Citrix notes that, customers using Citrix-managed cloud services do not need to take any action. 

Referenties

https://www.tenable.com/blog/cve-2022-27510-critical-citrix-adc-and-gateway-authentication-bypass-vulnerability

https://www.redpacketsecurity.com/citrix-adc-and-citrix-gateway-are-affected-by-a-critical-authentication-bypass-flaw/