Vulnerability Details CVE-2008-0356
Buffer overflow in the Independent Management Architecture (IMA) service in Citrix Presentation Server (MetaFrame Presentation Server) 4.5 and earlier, Access Essentials 2.0 and earlier, and Desktop Server 1.0 allows remote attackers to execute arbitrary code via an invalid size value in a packet to TCP port 2512 or 2513.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.614
EPSS Ranking 98.2%
CVSS Severity
CVSS v2 Score 10.0
Products affected by CVE-2008-0356
-
cpe:2.3:a:citrix:access_essentials:-
-
cpe:2.3:a:citrix:access_essentials:1.0
-
cpe:2.3:a:citrix:access_essentials:1.5
-
cpe:2.3:a:citrix:access_essentials:2.0
-
cpe:2.3:a:citrix:desktop_server:1.0
-
cpe:2.3:a:citrix:metaframe_presentation_server:-
-
cpe:2.3:a:citrix:metaframe_presentation_server:3.0
-
cpe:2.3:a:citrix:metaframe_presentation_server:4.0
-
cpe:2.3:a:citrix:metaframe_presentation_server:4.5
-
cpe:2.3:a:citrix:presentation_server:-
-
cpe:2.3:a:citrix:presentation_server:4.0
-
cpe:2.3:a:citrix:presentation_server:4.5