Citrix XenDesktop 7.x, 5.x, and 4.x, when pooled random desktop groups is enabled and ShutdownDesktopsAfterUse is disabled, allows local guest users to gain access to another user's desktop via unspecified vectors.
Weaknesses in this category are related to the management of permissions, privileges, and other security features that are used to perform access control.
Link | Tags |
---|---|
http://www.securityfocus.com/bid/68530 | vdb entry third party advisory |
http://www.securitytracker.com/id/1030566 | vdb entry third party advisory |
http://secunia.com/advisories/59889 | third party advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/94460 | vdb entry third party advisory |
http://support.citrix.com/article/CTX139591 | patch vendor advisory |