New Flaws in Citrix Virtual Apps Enable RCE Attacks via MSMQ Misconfiguration
Researchers studying cybersecurity have discovered fresh security holes in Citrix Desktop and Virtual Apps that might be used to accomplish unauthenticated remote code execution (RCE).
According to watchTowr's research, the problem stems from the Session Recording feature, which enables system administrators to record keyboard and mouse input, user activity, and a desktop video stream for audit, compliance, and troubleshooting purposes.
According to security researcher Sina Kheirkhah, the vulnerability specifically takes advantage of a negligently exposed MSMQ instance with incorrectly configured permissions that uses BinaryFormatter to accomplish unauthenticated RCE from any site via HTTP read more about New Flaws in Citrix Virtual Apps Enable RCE Attacks via MSMQ Misconfiguration....

