CVE-2024-7889

Local privilege escalation allows a low-privileged user to gain SYSTEM privileges in Citrix Workspace app for Windows
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:citrix:workspace:*:*:*:*:ltsr:windows:*:*
cpe:2.3:a:citrix:workspace:2203.1:cu1:*:*:ltsr:windows:*:*
cpe:2.3:a:citrix:workspace:2203.1:cu2:*:*:ltsr:windows:*:*
cpe:2.3:a:citrix:workspace:2203.1:cu3:*:*:ltsr:windows:*:*
cpe:2.3:a:citrix:workspace:2203.1:cu4:*:*:ltsr:windows:*:*
cpe:2.3:a:citrix:workspace:2203.1:cu5:*:*:ltsr:windows:*:*
cpe:2.3:a:citrix:workspace:2203.1:cu6_hotfix1:*:*:ltsr:windows:*:*
cpe:2.3:a:citrix:workspace:2203.1:cu6_hotfix2:*:*:ltsr:windows:*:*
cpe:2.3:a:citrix:workspace:2402:-:*:*:ltsr:windows:*:*

Configuration 2 (hide)

cpe:2.3:a:citrix:workspace:*:*:*:*:-:windows:*:*

History

22 Oct 2024, 14:50

Type Values Removed Values Added
CWE NVD-CWE-noinfo
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.3
References () https://support.citrix.com/s/article/CTX691485-citrix-workspace-app-for-windows-security-bulletin-cve20247889-and-cve20247890?language=en_US - () https://support.citrix.com/s/article/CTX691485-citrix-workspace-app-for-windows-security-bulletin-cve20247889-and-cve20247890?language=en_US - Vendor Advisory
First Time Citrix workspace
Citrix
CPE cpe:2.3:a:citrix:workspace:2203.1:cu5:*:*:ltsr:windows:*:*
cpe:2.3:a:citrix:workspace:*:*:*:*:-:windows:*:*
cpe:2.3:a:citrix:workspace:2203.1:cu4:*:*:ltsr:windows:*:*
cpe:2.3:a:citrix:workspace:2203.1:cu3:*:*:ltsr:windows:*:*
cpe:2.3:a:citrix:workspace:2203.1:cu6_hotfix2:*:*:ltsr:windows:*:*
cpe:2.3:a:citrix:workspace:*:*:*:*:ltsr:windows:*:*
cpe:2.3:a:citrix:workspace:2203.1:cu6_hotfix1:*:*:ltsr:windows:*:*
cpe:2.3:a:citrix:workspace:2203.1:cu2:*:*:ltsr:windows:*:*
cpe:2.3:a:citrix:workspace:2402:-:*:*:ltsr:windows:*:*
cpe:2.3:a:citrix:workspace:2203.1:cu1:*:*:ltsr:windows:*:*

13 Sep 2024, 18:35

Type Values Removed Values Added
CWE CWE-664

12 Sep 2024, 12:35

Type Values Removed Values Added
Summary
  • (es) La escalada de privilegios locales permite que un usuario con pocos privilegios obtenga permisos de SYSTEM en la aplicación Citrix Workspace para Windows

11 Sep 2024, 23:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-09-11 23:15

Updated : 2024-10-22 14:50


NVD link : CVE-2024-7889

Mitre link : CVE-2024-7889

CVE.ORG link : CVE-2024-7889


JSON object : View

Products Affected

citrix

  • workspace
CWE
NVD-CWE-noinfo CWE-664

Improper Control of a Resource Through its Lifetime