Rewterz

Rewterz Threat Advisory – Multiple Microsoft Edge (Chromium-based) Vulnerabilities

June 2, 2022
Rewterz

Rewterz Threat Alert – IcedID banking Trojan – Active IOC

June 2, 2022

Rewterz Threat Advisory –CVE-2019-13608 – Citrix StoreFront Server Vulnerability Exploited in the Wild

Severity

High

Analysis Summary

CVE-2019-13608

Citrix StoreFront Server could allow a remote attacker to obtain sensitive information, caused by an XML external entity (XXE) error when processing XML data. By sending a specially-crafted XML code, a remote attacker could exploit this vulnerability to obtain sensitive information.

Impact

  • Information Disclosure

Indicators Of Compromise

CVE

  • CVE-2019-13608

Affected Vendors

Citrix

Affected Products

Citrix StoreFront Server 1902
Citrix StoreFront Server 7.15 LTSR CU3
Citrix StoreFront Server 7.6 LTSR before CU7

Remediation

Refer to Citrix Security Advisory for patch, upgrade or suggested workaround information.

Citrix Security Advisory

Reading this advisory was a good start.

Make it a habit.

Rewterz publishes threat advisories ahead of mainstream cybersecurity media, informed by an AI-Native Autonomous SOC that sees regional threat actor activity in real time. Subscribe to receive each new advisory as it publishes, plus a monthly Middle East threat landscape brief drawn from our own SOC telemetry. For teams evaluating their detection coverage, a 30-minute consultation with a senior analyst is also available, at your pace, when you're ready.