>> Citrix Access Gateway Advanced Access Control LDAP Authentication Bypass
Title : Citrix Access Gateway Advanced Access Control LDAP Authentication Bypass VUPEN ID : VUPEN/ADV-2006-3643 CVE ID : CVE-2006-4846
Rated as : High Risk
Remotely Exploitable : Yes Locally Exploitable : Yes Release Date : 2006-09-15
Technical Description
A vulnerability has been identified in Citrix Access Gateway, which could be exploited by attackers to bypass security restrictions. This flaw is due to an error in the Advanced Access Control option (AAC) when configured to use LDAP authentication, which could be exploited by attackers to gain unauthorized access to a vulnerable application without supplying valid credentials.
Subscribe to VUPEN VNS and receive real-time e-mail and SMS alerts when new advisories or patches relevant to your systems and network configurations are available.
Feedback If you have additional information or corrections for this security advisory please submit them via our contact form.