Vulnerability Details CVE-2013-6944
Cross-site scripting (XSS) vulnerability in the user interface in the AAA TM vServer in Citrix NetScaler Application Delivery Controller (ADC) 9.3.x before 9.3-64.4, 10.0 before 10.0-77.5, and 10.1 before 10.1-118.7 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 52.2%
CVSS Severity
CVSS v2 Score 4.3
Products affected by CVE-2013-6944
-
cpe:2.3:o:citrix:netscaler_application_delivery_controller_firmware:10.0
-
cpe:2.3:o:citrix:netscaler_application_delivery_controller_firmware:10.1
-
cpe:2.3:o:citrix:netscaler_application_delivery_controller_firmware:9.3(1)
-
cpe:2.3:o:citrix:netscaler_application_delivery_controller_firmware:9.3.e