Insufficient input validation leading to memory overread when the NetScaler is configured as a Gateway (VPN virtual server, ICA Proxy, CVPN, RDP Proxy) OR AAA virtual server
2025-06-17T13:15:21.523
2025-10-30T20:10:26.470
Analyzed
CVSSv3.1: 7.5 (HIGH)
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Application | citrix | netscaler_application_delivery_controller | < 12.1-55.328 | Yes |
| Application | citrix | netscaler_application_delivery_controller | < 13.1-37.235 | Yes |
| Application | citrix | netscaler_application_delivery_controller | < 13.1-37.235 | Yes |
| Application | citrix | netscaler_application_delivery_controller | < 13.1-58.32 | Yes |
| Application | citrix | netscaler_application_delivery_controller | < 14.1-43.56 | Yes |
| Application | citrix | netscaler_gateway | < 13.1-58.32 | Yes |
| Application | citrix | netscaler_gateway | < 14.1-43.56 | Yes |