Cross-site scripting (XSS) vulnerability in Citrix NetScaler Gateway (formerly Citrix Access Gateway Enterprise Edition) 9.x before 9.3.66.5 and 10.x before 10.1.123.9 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
2014-05-02T14:55:05.933
2025-04-12T10:46:40.837
Deferred
CVSSv2: 4.3 (MEDIUM)
AV:N/AC:M/Au:N/C:N/I:P/A:N
8.6
2.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | citrix | netscaler_access_gateway_firmware | 9.3 | Yes |
Operating System | citrix | netscaler_access_gateway_firmware | 9.3.61.5 | Yes |
Operating System | citrix | netscaler_access_gateway_firmware | 9.3.62.4 | Yes |
Operating System | citrix | netscaler_access_gateway_firmware | 10.0 | Yes |
Operating System | citrix | netscaler_access_gateway_firmware | 10.0.74.4 | Yes |
Operating System | citrix | netscaler_access_gateway_firmware | 10.1 | Yes |
Hardware | citrix | netscaler_access_gateway | - | Yes |