Vulnerability Details CVE-2025-5777
Insufficient input validation leading to memory overread when the NetScaler is configured as a Gateway (VPN virtual server, ICA Proxy, CVPN, RDP Proxy) OR AAA virtual server
Exploit prediction scoring system (EPSS) score
EPSS Score 0.058
EPSS Ranking 90.1%
CVSS Severity
CVSS v3 Score 7.5
Proposed Action
Citrix NetScaler ADC and Gateway contain an out-of-bounds read vulnerability due to insufficient input validation. This vulnerability can lead to memory overread when the NetScaler is configured as a Gateway (VPN virtual server, ICA Proxy, CVPN, RDP Proxy) OR AAA virtual server.
Ransomware Campaign
Unknown
Products affected by CVE-2025-5777
-
cpe:2.3:a:citrix:netscaler_application_delivery_controller:12.1
-
cpe:2.3:a:citrix:netscaler_application_delivery_controller:12.1-55.297
-
cpe:2.3:a:citrix:netscaler_application_delivery_controller:12.1-55.300
-
cpe:2.3:a:citrix:netscaler_application_delivery_controller:12.1-55.302
-
cpe:2.3:a:citrix:netscaler_application_delivery_controller:13.1
-
cpe:2.3:a:citrix:netscaler_application_delivery_controller:13.1-37.159
-
cpe:2.3:a:citrix:netscaler_application_delivery_controller:13.1-37.164
-
cpe:2.3:a:citrix:netscaler_application_delivery_controller:13.1-37.176
-
cpe:2.3:a:citrix:netscaler_application_delivery_controller:13.1-49.13
-
cpe:2.3:a:citrix:netscaler_application_delivery_controller:13.1-49.15
-
cpe:2.3:a:citrix:netscaler_application_delivery_controller:13.1-51.15
-
cpe:2.3:a:citrix:netscaler_application_delivery_controller:14.1
-
cpe:2.3:a:citrix:netscaler_application_delivery_controller:14.1-12.35
-
cpe:2.3:a:citrix:netscaler_application_delivery_controller:14.1-8.50
-
cpe:2.3:a:citrix:netscaler_gateway:13.1
-
cpe:2.3:a:citrix:netscaler_gateway:13.1-49.13
-
cpe:2.3:a:citrix:netscaler_gateway:13.1-49.15
-
cpe:2.3:a:citrix:netscaler_gateway:13.1-51.15
-
cpe:2.3:a:citrix:netscaler_gateway:13.1-52.19
-
cpe:2.3:a:citrix:netscaler_gateway:13.1-53.24
-
cpe:2.3:a:citrix:netscaler_gateway:13.1-54.29
-
cpe:2.3:a:citrix:netscaler_gateway:13.1-55.34
-
cpe:2.3:a:citrix:netscaler_gateway:13.1-56.18
-
cpe:2.3:a:citrix:netscaler_gateway:13.1-57.26
-
cpe:2.3:a:citrix:netscaler_gateway:14.1
-
cpe:2.3:a:citrix:netscaler_gateway:14.1-12.35
-
cpe:2.3:a:citrix:netscaler_gateway:14.1-17.38
-
cpe:2.3:a:citrix:netscaler_gateway:14.1-21.57
-
cpe:2.3:a:citrix:netscaler_gateway:14.1-25.56
-
cpe:2.3:a:citrix:netscaler_gateway:14.1-29.72
-
cpe:2.3:a:citrix:netscaler_gateway:14.1-34.42
-
cpe:2.3:a:citrix:netscaler_gateway:14.1-38.53
-
cpe:2.3:a:citrix:netscaler_gateway:14.1-4.42
-
cpe:2.3:a:citrix:netscaler_gateway:14.1-8.50