citrix sharefile CVE-2019-7218 is a vulnerability in Citrix Sharefile
Published on May 13, 2019

Citrix ShareFile before 19.23 allows a downgrade from two-factor authentication to one-factor authentication. An attacker with access to the offline victim's otp physical token or virtual app (like google authenticator) is able to bypass the first authentication phase (username/password mechanism) and log-in using username/otp combination only (phase 2 of 2FA).

NVD


Products Associated with CVE-2019-7218

Want to know whenever a new CVE is published for Citrix Sharefile? stack.watch will email you.

 

Exploit Probability

EPSS
0.27%
Percentile
50.39%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.