Show filters
60 Total Results
Displaying 11-20 of 60
Sort by:
Attacker Value
Unknown

CVE-2024-8535

Disclosure Date: November 12, 2024 (last updated November 13, 2024)
Authenticated user can access unintended user capabilities in NetScaler ADC and NetScaler Gateway if the appliance must be configured as a Gateway (SSL VPN, ICA Proxy, CVPN, RDP Proxy) with KCDAccount configuration for Kerberos SSO to access backend resources OR the appliance must be configured as an Auth Server (AAA Vserver) with KCDAccount configuration for Kerberos SSO to access backend resources
0
Attacker Value
Unknown

CVE-2024-8534

Disclosure Date: November 12, 2024 (last updated November 13, 2024)
Memory safety vulnerability leading to memory corruption and Denial of Service in NetScaler ADC and Gateway if the appliance must be configured as a Gateway (VPN Vserver) with RDP Feature enabled OR the appliance must be configured as a Gateway (VPN Vserver) and RDP Proxy Server Profile is created and set to Gateway (VPN Vserver) OR the appliance must be configured as a Auth Server (AAA Vserver) with RDP Feature enabled
0
Attacker Value
Unknown

CVE-2024-5491

Disclosure Date: July 10, 2024 (last updated July 11, 2024)
Denial of Service in NetScaler ADC and NetScaler Gateway in NetScaler
0
Attacker Value
Unknown

CVE-2023-4967

Disclosure Date: October 27, 2023 (last updated November 08, 2023)
Denial of Service in NetScaler ADC and NetScaler Gateway when configured as a Gateway (VPN virtual server, ICA Proxy, CVPN, RDP Proxy) or AAA Virtual Server
Attacker Value
Unknown

CVE-2023-3467

Disclosure Date: July 19, 2023 (last updated October 08, 2023)
Privilege Escalation to root administrator (nsroot)
Attacker Value
Unknown

CVE-2023-3466

Disclosure Date: July 19, 2023 (last updated October 08, 2023)
Reflected Cross-Site Scripting (XSS)
Attacker Value
Unknown

CVE-2021-22927

Disclosure Date: August 05, 2021 (last updated November 28, 2024)
A session fixation vulnerability exists in Citrix ADC and Citrix Gateway 13.0-82.45 when configured SAML service provider that could allow an attacker to hijack a session.
Attacker Value
Unknown

CVE-2021-22919

Disclosure Date: August 05, 2021 (last updated November 28, 2024)
A vulnerability has been discovered in Citrix ADC (formerly known as NetScaler ADC) and Citrix Gateway (formerly known as NetScaler Gateway), and Citrix SD-WAN WANOP Edition models 4000-WO, 4100-WO, 5000-WO, and 5100-WO. These vulnerabilities, if exploited, could lead to the limited available disk space on the appliances being fully consumed.
Attacker Value
Unknown

CVE-2020-8299

Disclosure Date: June 16, 2021 (last updated November 28, 2024)
Citrix ADC and Citrix/NetScaler Gateway 13.0 before 13.0-76.29, 12.1-61.18, 11.1-65.20, Citrix ADC 12.1-FIPS before 12.1-55.238, and Citrix SD-WAN WANOP Edition before 11.4.0, 11.3.2, 11.3.1a, 11.2.3a, 11.1.2c, 10.2.9a suffers from uncontrolled resource consumption by way of a network-based denial-of-service from within the same Layer 2 network segment. Note that the attacker must be in the same Layer 2 network segment as the vulnerable appliance.
Attacker Value
Unknown

CVE-2020-8246

Disclosure Date: September 18, 2020 (last updated February 22, 2025)
Citrix ADC and Citrix Gateway 13.0 before 13.0-64.35, Citrix ADC and NetScaler Gateway 12.1 before 12.1-58.15, Citrix ADC 12.1-FIPS before 12.1-55.187, Citrix ADC and NetScaler Gateway 12.0, Citrix ADC and NetScaler Gateway 11.1 before 11.1-65.12, Citrix SD-WAN WANOP 11.2 before 11.2.1a, Citrix SD-WAN WANOP 11.1 before 11.1.2a, Citrix SD-WAN WANOP 11.0 before 11.0.3f, Citrix SD-WAN WANOP 10.2 before 10.2.7b are vulnerable to a denial of service attack originating from the management network.