CVE-2020-8271: Citrix SD-WAN

Critical severity, CVSS 9.8. EPSS: 11.1% chance of exploitation in the next 30 days.

Unauthenticated remote code execution with root privileges in Citrix SD-WAN Center versions before 11.2.2, 11.1.2b and 10.2.8

Affected products

  • Citrix SD-WAN: from 10.2.0, before 10.2.8 (fixed in 10.2.8); from 11.1.0, before 11.1.2b (fixed in 11.1.2b); from 11.2.0, before 11.2.2 (fixed in 11.2.2)

Published 2020-11-16. Last modified 2026-06-17.