CVE Published: 11/07/2023 |
CVE Updated: 07/11/2024 |
CVE Year: 2023 Source: Citrix |
Vendor: Citrix |
Product: Citrix Secure Access client for Windows Status : PUBLISHED
CVE-2023-24491 Description
A vulnerability has been discovered in the Citrix Secure Access client for Windows
which, if exploited, could allow an attacker with access to an endpoint with Standard User Account that has the vulnerable client installed to escalate their local privileges to that of NT AUTHORITY\SYSTEM.
Metrics
CVSS Version: 3.1 |
Base Score: 7.8 HIGH Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H