CVE-2024-8068 KEV
8.0
HIGH · CVSS 3.1 · EPSS 3.5% (pctl 89)
Patch first
On CISA KEV — known exploited in the wild, due 2025-09-15.
Description
Privilege escalation to NetworkService Account access in Citrix Session Recording when an attacker is an authenticated user in the same Windows Active Directory domain as the session recording server domain
Scoring
| CVSS | 8.0 (HIGH, v3.1) |
|---|---|
| Vector | CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
| EPSS | 3.48% — more likely to be exploited than 89% of all CVEs |
| Weakness | CWE-269 |
| On CISA KEV | yes — remediate by 2025-09-15 |
| Public exploit | none known |
| Published | 2024-11-12 |
| Last modified | 2026-06-17 |
CISA KEV
| Name | Citrix Session Recording Improper Privilege Management Vulnerability |
|---|---|
| Added | 2025-08-25 |
| Due | 2025-09-15 |
| Vendor / product | Citrix / Session Recording |
| Ransomware use | none reported |
Affected (1)
| Vendor | Product |
|---|---|
| citrix | session recording |
References
→ the Explorer · watch your stack · NVD