Blog | G5 Cyber Security

An Exploit Chain Against Citrix SD-WAN

Citrix SD-WAN Center is designed to allow organizations to have software-defined WAN capabilities spanning across geographic regions. Vulnerabilities are in Perl scripts in Perl CGI scripts used to exploit the vulnerabilities. I also found yet another way to bypass authentication and I did not find an unauthenticated RCE vulnerability in the SDWAN appliance, however, I did find a way to. bypass the authentication requirement of the target controller. The vulnerability can be exploited without authentication to gain root access.”]

Source: https://medium.com/tenable-techblog/an-exploit-chain-against-citrix-sd-wan-709db08fb4ac

Exit mobile version