Citrix ‘Recording Manager’ Zero-Day Bug Allows Unauthenticated RCE

Citrix ‘Recording Manager’ Zero-Day Bug Allows Unauthenticated RCE

The unpatched security vulnerability, which doesn’t have a CVE yet, is due to an exposed Microsoft Message Queuing (MSMQ) instance and the use of the insecure BinaryFormatter.

darkreading – ​Read More