Vulnerability CVE-2016-6273


Published: 2016-10-07

Description:
The lmadmin component in Flexera FlexNet Publisher (aka Flex License Manager) before 2015 SP5 and 2016 before R1 SP1, as used by Citrix License Server for Windows before 11.14.0.1 and Citrix License Server VPX before 11.14.0.1, allows remote attackers to cause a denial of service (crash) via a type 2F packet with a '01 19' opcode.

CVSS2 => (AV:N/AC:L/Au:N/C:N/I:N/A:P)

CVSS Base Score
Impact Subscore
Exploitability Subscore
5/10
2.9/10
10/10
Exploit range
Attack complexity
Authentication
Remote
Low
No required
Confidentiality impact
Integrity impact
Availability impact
None
None
Partial
Affected software
Citrix -> License server 
Citrix -> License server vpx 

 References:
http://support.citrix.com/article/CTX217430
http://www.securityfocus.com/bid/93450
https://www.tenable.com/security/research/tra-2016-29

Copyright 2024, cxsecurity.com

 

Back to Top