CVE-2022-26151

Citrix XenMobile Server 10.12 through RP11, 10.13 through RP7, and 10.14 through RP4 allows Command Injection.
Command Injection
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
7.2 HIGH
NETWORK
LOW
HIGH
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
mitreCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 84%
VendorProductVersion
citrixxenmobile_server
10.13.0
citrixxenmobile_server
10.13.0:rolling_patch_3
citrixxenmobile_server
10.13.0:rolling_patch_4
citrixxenmobile_server
10.13.0:rolling_patch_5
citrixxenmobile_server
10.13.0:rolling_patch_6
citrixxenmobile_server
10.13.0:rolling_patch_7
citrixxenmobile_server
10.14.0
citrixxenmobile_server
10.14.0:rolling_patch_1
citrixxenmobile_server
10.14.0:rolling_patch_2
citrixxenmobile_server
10.14.0:rolling_patch_3
citrixxenmobile_server
10.14.0:rolling_patch_4
𝑥
= Vulnerable software versions