ZeroHour

CVE-2021-22928

CVSS 3.1
7.8 high
EPSS
<1%p16
Published
()
Modified
Description

A vulnerability has been identified in Citrix Virtual Apps and Desktops that could, if exploited, allow a user of a Windows VDA that has either Citrix Profile Management or Citrix Profile Management WMI Plugin installed to escalate their privilege level on that Windows VDA to SYSTEM.

Vendors
citrix
Products
virtual apps and desktops, xenapp, xendesktop
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.