Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2023-4966


Sensitive information disclosure in NetScaler ADC and NetScaler Gateway when configured as a Gateway (VPN virtual server, ICA Proxy, CVPN, RDP Proxy) or AAA  virtual server.


Published

2023-10-10T14:15:10.977

Last Modified

2025-03-13T19:53:13.810

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 9.4 (CRITICAL)

Weaknesses
  • Type: Secondary
    CWE-119
  • Type: Primary
    NVD-CWE-noinfo

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application citrix netscaler_application_delivery_controller < 12.1-55.300 Yes
Application citrix netscaler_application_delivery_controller < 12.1-55.300 Yes
Application citrix netscaler_application_delivery_controller < 13.0-92.19 Yes
Application citrix netscaler_application_delivery_controller < 13.1-37.164 Yes
Application citrix netscaler_application_delivery_controller < 13.1-49.15 Yes
Application citrix netscaler_application_delivery_controller < 14.1-8.50 Yes
Application citrix netscaler_gateway < 13.0-92.19 Yes
Application citrix netscaler_gateway < 13.1-49.15 Yes
Application citrix netscaler_gateway < 14.1-8.50 Yes

References