Skip to content
COOEY

EXPOSURES › CVE-2019-12991

CVE-2019-12991

HIGH ⌖ ON CISA KEV · EXPLOITED
DETAIL
SourceCISA-KEV · kev Published2022-03-25 Referencehttps://nvd.nist.gov/vuln/detail/CVE-2019-12991 ↗
⚡ RCE ⌖ EXPLOITED IN THE WILD SHAME 78/100 rceexploited-in-wildunpatched

Citrix SD-WAN and NetScaler suffered an authenticated command injection flaw that allowed attackers to execute arbitrary commands on the devices.

This authenticated command injection vulnerability in Citrix SD-WAN and NetScaler appliances allowed attackers to execute arbitrary system commands, leading to potential full device compromise. DIB organizations must ensure these devices are patched immediately, as the flaw was actively exploited in the wild and represents a significant supply-chain and infrastructure risk. The failure highlights the danger of relying on unpatched network appliances that can be turned into command execution platforms.

Shame score — The vulnerability was actively exploited in the wild and allowed arbitrary command execution on critical network appliances, demonstrating a severe failure in patch management and security hygiene.

▸ RECOMMENDED ACTION  Actively exploited (CISA KEV) — remediate now, ahead of your normal patch cycle.

DESCRIPTION

Authenticated Command Injection in Citrix SD-WAN Appliance and NetScaler SD-WAN Appliance.

AFFECTED FEDRAMP PRODUCTS · 1
PRODUCTSTATUS
Citrix for Government
Citrix
Authorized