Citrix XenApp Online Plug-in for Windows 12.1 and earlier, and Citrix Receiver for Windows 3.2 and earlier could allow remote attackers to execute arbitrary code by convincing a target to open a specially crafted file from an SMB or WebDAV fileserver.
https://exchange.xforce.ibmcloud.com/vulnerabilities/78433
http://www.securitytracker.com/id?1027522