CVE-2017-9231

EUVD-2017-18169
XML external entity (XXE) vulnerability in Citrix XenMobile Server 9.x and 10.x before 10.5 RP3 allows attackers to obtain sensitive information via unspecified vectors.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
7.5 HIGH
NETWORK
LOW
NONE
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Base Score
CVSS 3.x
EPSS Score
Percentile: 60%
Affected Products (NVD)
VendorProductVersion
citrixxenmobile_server
9.0
citrixxenmobile_server
10.0
citrixxenmobile_server
10.1
citrixxenmobile_server
10.3
citrixxenmobile_server
10.3.5
citrixxenmobile_server
10.3.6
citrixxenmobile_server
10.4
citrixxenmobile_server
10.5
𝑥
= Vulnerable software versions