CVE-2021-22919 is a high-severity vulnerability affecting Citrix ADC, Citrix Gateway, and specific Citrix SD-WAN WANOP Edition models. This flaw allows an unauthenticated attacker to remotely exhaust the appliance's disk space, leading to a denial of service. While rated 7.5 CVSS, there is currently no public exploit code, active exploitation, or significant community discussion surrounding this vulnerability.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
>= 11.1, < 11.1-65.22CPE matchmatch criteria | cpe:2.3:o:citrix:application_delivery_controller_firmware:*:*:*:*:*:*:*:* | ||
>= 12.1, < 12.1-62.27CPE matchmatch criteria | cpe:2.3:o:citrix:application_delivery_controller_firmware:*:*:*:*:*:*:*:* | ||
>= 13.0, < 13.0-82.45CPE matchmatch criteria | cpe:2.3:o:citrix:application_delivery_controller_firmware:*:*:*:*:*:*:*:* | ||
>= 12.1, < 12.1-55.238CPE matchmatch criteria | cpe:2.3:o:citrix:application_delivery_controller_firmware:*:*:*:*:*:*:*:* | ||
>= 12.1, < 12.1-62.27CPE matchmatch criteria | cpe:2.3:a:citrix:gateway:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.