Citrix MetaFrame Presentation Server Security Policy Bypass Vulnerability

Citrix MetaFrame Presentation Server is susceptible to a server policy bypass vulnerability. This issue is due to the application utilizing and trusting client-supplied data in policy decisions.

Attackers may bypass security policies by changing the contents of 'launch.ica' files.

This allows attackers to bypass administratively defined security policies, potentially aiding them in further attacks.


 

Privacy Statement
Copyright 2010, SecurityFocus