CVE-2024-8068
Description
Privilege escalation to NetworkService Account access in Citrix Session Recording when an attacker is an authenticated user in the same Windows Active Directory domain as the session recording server domain
Summary dbcve.org
In Citrix Session Recording, an authenticated user in the same Windows Active Directory domain as the session recording server can escalate privileges to gain NetworkService Account access. This represents a vertical privilege escalation from a standard authenticated user to a higher-privileged service account context within the Windows environment.
Mitigation
Implement least-privilege access controls on AD user accounts, restrict domain user permissions to Citrix Session Recording servers, apply vendor patches when available, and consider network segmentation to limit exposure. Review ACLs and service account configurations in the meantime.