Privilege Escalation Vulnerability in Citrix Workspace App

Original Issue Date: May 13, 2021

Severity Rating: MEDIUM

Software Affected

  • Citrix Workspace App for Windows prior to 2105
  • Citrix Workspace App (LTSR)for Windows prior to 1912 LTSR CU4

Overview

  • A vulnerability has been reported in Citrix Workspace App for Windows which could allow an attacker to gain elevated privileges on a targeted system.

Description

  • This vulnerability is a local privilege escalation vulnerability affecting Citrix Workspace App for Windows if the app was installed using an account with local or domain administrator privileges.
  • Successful exploitation of this vulnerability could allow a local attacker to gain elevated privileges on the targeted system.

Solution

  •       Apply appropriate updates as mentioned in:

https://www.citrix.com/downloads/workspace-app/windows/

https://www.citrix.com/downloads/workspace-app/workspace-app-for-windows-long-term-service-release/

CVE Name

  •       CVE-2021-22907

Disclaimer

  •       The information provided herein is on “as is” basis, without warranty of any kind.

Leave a Reply