Citrix Metaframe Presentation Server 3.0 and 4.0 allows remote attackers to bypass policy restrictions by downloading the launch.ica file and changing the client device name (ClientName).
Link | Tags |
---|---|
http://support.citrix.com/kb/entry%21default.jspa?categoryID=275&externalID=CTX107705 | |
http://securitytracker.com/id?1014994 | vdb entry |
http://marc.info/?l=bugtraq&m=112811189420696&w=2 | mailing list |
http://securityreason.com/securityalert/39 | third party advisory |
http://www.securityfocus.com/bid/14989 | vdb entry |
http://www.grupoitpro.com.ar/ctxpoliciesbypass.txt | exploit vendor advisory |
http://secunia.com/advisories/17032/ | third party advisory vendor advisory |