CyberRota Analysis
This is a critical severity vulnerability with a CVSS score of 9.8. It affects Citrix. It is listed in CISA's Known Exploited Vulnerabilities catalog, indicating confirmed active exploitation in the wild. Its EPSS score suggests a 53.6% probability of exploitation in the next 30 days. It may be remotely exploitable. Exploitation may require the attacker to be authenticated.
CISA KEV Details
Status: This CVE is listed in CISA's Known Exploited Vulnerabilities catalog.
Ransomware use: Known
Added to KEV: 2022-03-25
Required action: Apply updates per vendor instructions.
Original NVD Description
Improper Access Control in Citrix ShareFile storage zones controller before 5.11.20 may allow an unauthenticated attacker to remotely compromise the storage zones controller.
Related CVEs
Other vulnerabilities affecting the same vendor(s)