{"resultsPerPage":1,"startIndex":0,"totalResults":1,"format":"NVD_CVE","version":"2.0","timestamp":"2026-04-22T13:08:19.336","vulnerabilities":[{"cve":{"id":"CVE-2020-8269","sourceIdentifier":"support@hackerone.com","published":"2020-11-16T01:15:13.623","lastModified":"2024-11-21T05:38:37.493","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"An unprivileged Windows user on the VDA can perform arbitrary command execution as SYSTEM in CVAD versions before 2009, 1912 LTSR CU1 hotfixes CTX285870 and CTX286120, 7.15 LTSR CU6 hotfix CTX285344 and 7.6 LTSR CU9"},{"lang":"es","value":"Un usuario de Windows no privilegiado en el VDA puede llevar a cabo una ejecución de comandos arbitrarios como SYSTEM en CVAD versiones anteriores a 2009, versión 1912 LTSR CU1 hotfixes CTX285870 y CTX286120, versión 7.15 LTSR CU6 hotfix CTX285344 y versión 7.6 LTSR CU9"}],"metrics":{"cvssMetricV31":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","baseScore":8.8,"baseSeverity":"HIGH","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"LOW","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH"},"exploitabilityScore":2.8,"impactScore":5.9}],"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:S/C:C/I:C/A:C","baseScore":9.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"SINGLE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":8.0,"impactScore":10.0,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"support@hackerone.com","type":"Secondary","description":[{"lang":"en","value":"CWE-269"}]},{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-269"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:citrix:virtual_apps_and_desktops:*:*:*:*:-:*:*:*","versionEndIncluding":"2006","matchCriteriaId":"5D9D1D8B-8C9A-4CF7-8CCD-2CFDA4AB5970"},{"vulnerable":true,"criteria":"cpe:2.3:a:citrix:virtual_apps_and_desktops:*:*:*:*:ltsr:*:*:*","versionStartIncluding":"1903","versionEndIncluding":"1912","matchCriteriaId":"799D10F0-247F-4BD2-9DA1-D37B043001C8"},{"vulnerable":true,"criteria":"cpe:2.3:a:citrix:xenapp:*:*:*:*:ltsr:*:*:*","versionEndExcluding":"7.6","matchCriteriaId":"DDB23637-BC09-4914-A028-AA01CB01F24D"},{"vulnerable":true,"criteria":"cpe:2.3:a:citrix:xenapp:*:*:*:*:ltsr:*:*:*","versionStartIncluding":"7.7","versionEndExcluding":"7.15","matchCriteriaId":"B0FFFD24-0C7B-4D8D-A786-9469D7DA0C35"},{"vulnerable":true,"criteria":"cpe:2.3:a:citrix:xenapp:7.6:-:*:*:ltsr:*:*:*","matchCriteriaId":"5A2B7A20-48C6-405C-99C8-06D0F4FE5910"},{"vulnerable":true,"criteria":"cpe:2.3:a:citrix:xenapp:7.6:cu8:*:*:ltsr:*:*:*","matchCriteriaId":"6246BB4D-CDB3-4A4B-940D-93293B6C417A"},{"vulnerable":true,"criteria":"cpe:2.3:a:citrix:xenapp:7.15:-:*:*:ltsr:*:*:*","matchCriteriaId":"39D97CED-69C7-4762-85E9-978813DB3392"},{"vulnerable":true,"criteria":"cpe:2.3:a:citrix:xenapp:7.15:cu6:*:*:ltsr:*:*:*","matchCriteriaId":"2A10B5EA-EC14-47ED-ADBB-D975C6B07BE3"},{"vulnerable":true,"criteria":"cpe:2.3:a:citrix:xendesktop:*:*:*:*:ltsr:*:*:*","versionEndExcluding":"7.6","matchCriteriaId":"31BF23CF-C7C3-4A61-B52B-964E14EE224A"},{"vulnerable":true,"criteria":"cpe:2.3:a:citrix:xendesktop:*:*:*:*:ltsr:*:*:*","versionStartIncluding":"7.7","versionEndExcluding":"7.15","matchCriteriaId":"2D2866E0-EB16-42AC-8C7F-7C52FDF88B9B"},{"vulnerable":true,"criteria":"cpe:2.3:a:citrix:xendesktop:7.6:-:*:*:ltsr:*:*:*","matchCriteriaId":"DF2F2C5D-D5AD-4E22-B182-67A4C0C90F0C"},{"vulnerable":true,"criteria":"cpe:2.3:a:citrix:xendesktop:7.6:cu8:*:*:ltsr:*:*:*","matchCriteriaId":"8CAEBBB5-DC51-4718-AC6C-152F7ADE19C1"},{"vulnerable":true,"criteria":"cpe:2.3:a:citrix:xendesktop:7.15:-:*:*:ltsr:*:*:*","matchCriteriaId":"1AFF8323-A381-481F-9BE2-F9027D942851"},{"vulnerable":true,"criteria":"cpe:2.3:a:citrix:xendesktop:7.15:cu6:*:*:ltsr:*:*:*","matchCriteriaId":"1A2A6CF3-F554-44C9-965E-FEAEDDE44D95"}]}]}],"references":[{"url":"https://support.citrix.com/article/CTX285059","source":"support@hackerone.com","tags":["Patch","Vendor Advisory"]},{"url":"https://support.citrix.com/article/CTX285059","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]}]}}]}