
ĬVE-2023-24486: Improper access control flaw leading to session takeover. ĬVE-2023-24485: Improper access control flaw leading to privilege escalation. ĬVE-2023-24484: Improper access control flaw allowing log files to be written to a directory that should be out of reach for regular users. Technical DetailsĬVE-2023-24483: Improper privilege management flaw leading to privilege escalation to NT AUTHORITY\SYSTEM.
It is then highly recommended to install the last security updates.
If exploited, these vulnerabilities could enable attackers to elevate their privileges and take control of the affected system, but they need local access to the target.
Once you have installed the Citrix Workspace App and logged into Virtual Desktop, click your name in the upper right corner of the Favorites page (where your application icons are) by the search bar and click "Activate".On February 14, 2023, Citrix released Security Bulletins regarding severe vulnerabilities affecting its Citrix Workspace, Virtual Apps and Desktops.
When activated, the Citrix Workspace App supports saving your login credentials so you don't need to re-enter them when you launch a Virtual Desktop application. You may add/remove/launch applications from a local Citrix Workspace App window that looks and functions just like the Virtual Desktop web portal. When the Citrix Workspace App is activated, icons for your Favorite Apps are placed into your Start Menu in Windows, along with your locally installed applications or in your User folder in Mac OS X. You don't need to open the Virtual Desktop web portal in a web browser to launch Virtual Desktop applications. This is an optional procedure that has the following benefits: If you have already installed the Citrix Workspace App and are logged into Virtual Desktop, you can "activate" it on Windows or Mac OS. What is "Activating the Citrix Workspace App" and Why Would I Want to do it?