Xenmobile Server
Vendor:
First CVE: Apr 7, 2016 · Active for 10 years
22
Total CVEs
More Total CVEs than 94% of tracked products
3.7
Avg CVEs / Year
Higher CVE frequency than 83% of tracked products
7.8
Avg CVSS
Higher Avg CVSS than 67% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Xenmobile Server over time
Volume of CVEsAvg CVSS Base Score
First CVE
Apr 7, 2016
10 years ago
Most Recent CVE
Apr 19, 2022
1,559 days ago
CVE Severity & Scoring
Xenmobile Server22 CVEs
23%
55%
23%
All CVEs352,708 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local3 (13.6%)
Network19 (86.4%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low20 (90.9%)
High2 (9.1%)
Unknown0 (0.0%)
User Interaction
None16 (72.7%)
Unknown0 (0.0%)
Required6 (27.3%)
Privileges Required
Low4 (18.2%)
High1 (4.5%)
None17 (77.3%)
Unknown0 (0.0%)
Top CVEs
Signals from CVEs in this product scope (22 CVEs).
22 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2020-8209HIGH Improper access control in Citrix XenMobile Server 10.12 before RP2, Citrix XenMobile Server 10.11 before RP4, Citrix XenMobile Server 10.10 before RP6 and Citrix XenMobile Server | Aug 17, 2020 | 7.5 | 62 | NO | YES |
CVE-2018-10653CRITICAL There is an XML External Entity (XXE) Processing Vulnerability in Citrix XenMobile Server 10.8 before RP2 and 10.7 before RP3. | May 23, 2018 | 9.8 | 43 | NO | YES |
CVE-2021-44520HIGH In Citrix XenMobile Server through 10.12 RP9, there is an Authenticated Command Injection vulnerability, leading to remote code execution with root privileges. | Apr 13, 2022 | 8.8 | 31 | NO | NO |
CVE-2020-8211CRITICAL Improper input validation in Citrix XenMobile Server 10.12 before RP3, Citrix XenMobile Server 10.11 before RP6, Citrix XenMobile Server 10.10 RP6 and Citrix XenMobile Server befor | Aug 17, 2020 | 9.8 | 30 | NO | NO |
CVE-2021-44519HIGH In Citrix XenMobile Server through 10.12 RP9, there is an Authenticated Directory Traversal vulnerability, leading to remote code execution. | Apr 19, 2022 | 8.8 | 29 | NO | NO |
CVE-2018-18571CRITICAL An Incorrect Access Control vulnerability has been identified in Citrix XenMobile Server 10.8.0 before Rolling Patch 6 and 10.9.0 before Rolling Patch 3. An attacker can impersonat | Jun 5, 2019 | 9.1 | 29 | NO | NO |
CVE-2022-26151HIGH Citrix XenMobile Server 10.12 through RP11, 10.13 through RP7, and 10.14 through RP4 allows Command Injection. | Apr 13, 2022 | 7.2 | 28 | NO | NO |
CVE-2018-18013HIGH * Xen Mobile through 10.8.0 includes a service listening on port 5001 within its firewall that accepts unauthenticated input. If this service is supplied with raw serialised Java o | Oct 24, 2018 | 7.8 | 26 | NO | NO |
CVE-2020-8253HIGH Improper authentication in Citrix XenMobile Server 10.12 before RP2, Citrix XenMobile Server 10.11 before RP4, Citrix XenMobile Server 10.10 before RP6 and Citrix XenMobile Server | Sep 18, 2020 | 7.5 | 25 | NO | NO |
CVE-2020-8212CRITICAL Improper access control in Citrix XenMobile Server 10.12 before RP3, Citrix XenMobile Server 10.11 before RP6, Citrix XenMobile Server 10.10 RP6 and Citrix XenMobile Server before | Aug 17, 2020 | 9.8 | 24 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (22 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
1 CVE
4.5% of CVEs· 97th percentile
ExploitDB
1 CVE
4.5% of CVEs· 88th percentile
Social Chatter
Signals from CVEs in this product scope (22 CVEs).
Media Mentions
Signals from CVEs in this product scope (22 CVEs).
Top CNAs Publishing CVEs For Xenmobile Server
Top CWEs
Versions
| Version | CVE Count | Avg CVSS | Avg EPSS | KEV | Exploits |
|---|---|---|---|---|---|
| 9.0 | 1 | 7.5 | 1.8% | 0 | 0 |
| 10.9.0 | 6 | 7.8 | 10.0% | 0 | 1 |
| 10.8.0 | 1 | 9.1 | 2.6% | 0 | 0 |
| 10.8 | 5 | 8.3 | 2.2% | 0 | 1 |
| 10.7 | 7 | 7.9 | 1.8% | 0 | 1 |
| 10.5 | 1 | 7.5 | 1.8% | 0 | 0 |
| 10.4 | 1 | 7.5 | 1.8% | 0 | 0 |
| 10.3.6 | 1 | 7.5 | 1.8% | 0 | 0 |
| 10.3.5 | 1 | 7.5 | 1.8% | 0 | 0 |
| 10.3 | 2 | 6.8 | 1.3% | 0 | 0 |
| 10.14.0 | 3 | 8.2 | 5.5% | 0 | 0 |
| 10.13.0 | 3 | 8.2 | 5.5% | 0 | 0 |
| 10.12.0 | 6 | 8.2 | 7.8% | 0 | 1 |
| 10.11.0 | 6 | 8.2 | 7.8% | 0 | 1 |
| 10.10.0 | 6 | 8.0 | 9.3% | 0 | 1 |
| 10.1 | 2 | 6.8 | 1.3% | 0 | 0 |
| 10.0 | 2 | 6.8 | 1.3% | 0 | 0 |