The calculated severity for CVEs has been updated to use CVSS v3 by default. CVEs that do not have a CVSS v3 score will fall back CVSS v2 for calculating severity. Severity display preferences can be toggled in the settings dropdown.
The lmadmin component in Flexera FlexNet Publisher (aka Flex License Manager) before 2015 SP5 and 2016 before R1 SP1, as used by Citrix License Server for Windows before 22.214.171.124 and Citrix License Server VPX before 126.96.36.199, allows remote attackers to cause a denial of service (crash) via a type 2F packet with a '01 19' opcode.
Base Score: 5
Impact Score: 2.9
Exploitability Score: 10
Base Score: 7.5
Impact Score: 3.6
Exploitability Score: 3.9
cpe:2.3:a:citrix:license_server:*:*:*:*:*:windows:*:* versions up to 188.8.131.52 (inclusive)
cpe:2.3:a:citrix:license_server_vpx:*:*:*:*:*:*:*:* versions up to 184.108.40.206 (inclusive)