Citrix Secure Access Client Flaw Lets Low-Privileged Users Gain SYSTEM Privileges
ID: f1090218-c952-505f-a490-18221305a9ff
STIX ID: report--f1090218-c952-505f-a490-18221305a9ff
Feed Name: Cyber Press
Cloud Software Group disclosed two security vulnerabilities in Citrix Secure Access Client for Windows and Citrix Endpoint Analysis Client for Windows: CVE-2026-53565 (improper privilege management allowing a standard user to escalate to SYSTEM — CVSS v4.0 8.5) and CVE-2026-53566 (out-of-bounds read — CVSS v4.0 6.8). Affected versions are before 26.6.1.20 for Secure Access and before 26.5.1.7 for Endpoint Analysis; Citrix recommends immediate upgrades to the specified patched releases as no workarounds are available.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
