Vulnerabilities
Vulnerable Software
Citrix:  >> Netscaler Gateway  Security Vulnerabilities
CVE-2023-6549
Known exploited
Improper Restriction of Operations within the Bounds of a Memory Buffer in NetScaler ADC and NetScaler Gateway allows Unauthenticated Denial of Service and Out-Of-Bounds Memory Read
CVSS Score
8.2
EPSS Score
0.187
Published
2024-01-17
CVE-2023-6548
Known exploited
Improper Control of Generation of Code ('Code Injection') in NetScaler ADC and NetScaler Gateway allows an attacker with access to NSIP, CLIP or SNIP with management interface to perform Authenticated (low privileged) remote code execution on Management Interface.
CVSS Score
5.5
EPSS Score
0.115
Published
2024-01-17
Denial of Service in NetScaler ADC and NetScaler Gateway when configured as a Gateway (VPN virtual server, ICA Proxy, CVPN, RDP Proxy) or AAA Virtual Server
CVSS Score
8.2
EPSS Score
0.004
Published
2023-10-27
CVE-2023-4966
Known exploited
Sensitive information disclosure in NetScaler ADC and NetScaler Gateway when configured as a Gateway (VPN virtual server, ICA Proxy, CVPN, RDP Proxy) or AAA  virtual server.
CVSS Score
9.4
EPSS Score
0.944
Published
2023-10-10
Reflected Cross-Site Scripting (XSS)
CVSS Score
8.3
EPSS Score
0.009
Published
2023-07-19
Privilege Escalation to root administrator (nsroot)
CVSS Score
8.0
EPSS Score
0.004
Published
2023-07-19
CVE-2023-3519
Known exploited
Unauthenticated remote code execution
CVSS Score
9.8
EPSS Score
0.915
Published
2023-07-19
A session fixation vulnerability exists in Citrix ADC and Citrix Gateway 13.0-82.45 when configured SAML service provider that could allow an attacker to hijack a session.
CVSS Score
8.1
EPSS Score
0.003
Published
2021-08-05
A vulnerability has been discovered in Citrix ADC (formerly known as NetScaler ADC) and Citrix Gateway (formerly known as NetScaler Gateway), and Citrix SD-WAN WANOP Edition models 4000-WO, 4100-WO, 5000-WO, and 5100-WO. These vulnerabilities, if exploited, could lead to the limited available disk space on the appliances being fully consumed.
CVSS Score
7.5
EPSS Score
0.007
Published
2021-08-05
Citrix ADC and Citrix/NetScaler Gateway 13.0 before 13.0-76.29, 12.1-61.18, 11.1-65.20, Citrix ADC 12.1-FIPS before 12.1-55.238, and Citrix SD-WAN WANOP Edition before 11.4.0, 11.3.2, 11.3.1a, 11.2.3a, 11.1.2c, 10.2.9a suffers from uncontrolled resource consumption by way of a network-based denial-of-service from within the same Layer 2 network segment. Note that the attacker must be in the same Layer 2 network segment as the vulnerable appliance.
CVSS Score
6.5
EPSS Score
0.002
Published
2021-06-16


Contact Us

Shodan ® - All rights reserved