Improper access control in Citrix Workspace app for Windows 1912 CU1 and 2006.1 causes privilege escalation and code execution when the automatic updater service is running.
The product does not restrict or incorrectly restricts access to a resource from an unauthorized actor.
When an actor claims to have a given identity, the product does not prove or insufficiently proves that the claim is correct.
Link | Tags |
---|---|
https://support.citrix.com/article/CTX277662 | vendor advisory |