Insufficient input validation leading to memory overread when the NetScaler is configured as a Gateway (VPN virtual server, ICA Proxy, CVPN, RDP Proxy) OR AAA virtual server
2025-06-17T13:15:21.523
2025-07-14T21:09:06.773
Analyzed
CVSSv3.1: 7.5 (HIGH)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | citrix | netscaler_application_delivery_controller | < 12.1-55.328 | Yes |
Application | citrix | netscaler_application_delivery_controller | < 13.1-37.235 | Yes |
Application | citrix | netscaler_application_delivery_controller | < 13.1-37.235 | Yes |
Application | citrix | netscaler_application_delivery_controller | < 13.1-58.32 | Yes |
Application | citrix | netscaler_application_delivery_controller | < 14.1-43.56 | Yes |
Application | citrix | netscaler_gateway | < 13.1-58.32 | Yes |
Application | citrix | netscaler_gateway | < 14.1-43.56 | Yes |