CVE-2008-2299

Severity CVSS v4.0:
Pending analysis
Type:
CWE-310 Cryptographic Issues
Publication date:
18/05/2008
Last modified:
08/08/2017

Description

Unspecified vulnerability in SecureICA and ICA Basic encryption of Citrix Presentation Server 4.5 and earlier, Access Essentials 2.0 and earlier, and Desktop Server 1.0 can cause clients to use weaker encryption settings than configured by the administrator, which might allow attackers to bypass intended restrictions.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:microsoft:windows_2003_server:*:*:*:*:*:*:*:*
cpe:2.3:a:citrix:presentation_server:*:*:*:*:*:*:*:* 4.5 (including)
cpe:2.3:a:citrix:access_essentials:*:*:*:*:*:*:*:* 2.0 (including)
cpe:2.3:a:citrix:desktop_server:1.0:*:*:*:*:*:*:*