This script is Copyright (C) 2016-2017 Tenable Network Security, Inc.
The remote host is affected by a security bypass vulnerability.
The version of Citrix XenServer running on the remote host is 7.x
prior to 7.0 hotfix XS70E003. It is, therefore, affected by a security
bypass vulnerability due to incorrect handling of Active Directory
(AD) credentials. An unauthenticated, remote attacker on the
management network with AD credentials for an AD account can exploit
this to compromise the XenServer host even if the credentials do not
See also :
Apply hotfix XS70E003 as referenced in the vendor advisory.
Risk factor :
High / CVSS Base Score : 7.5