← back
CVE-2020-8209observed exploitationCWE-22

CVE-2020-8209

72Vexday Risk Score

Patch now. It exploitation observed by VulnCheck and has a working public exploit.

ssvc Actepss 49%
from disclosure to weapon92 days
Published on NVDAug 17
1st PoC+92d
VulnCheck+1184d
exploitation probability
49%top 1% of all CVEs
observed exploitation
yesVulnCheck
2 public exploit(s)
Improper access control in Citrix XenMobile Server 10.12 before RP2, Citrix XenMobile Server 10.11 before RP4, Citrix XenMobile Server 10.10 before RP6 and Citrix XenMobile Server before 10.9 RP5 and leads to the ability to read arbitrary files.
⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.