QID 375623

Date Published: 2021-06-14

QID 375623: Citrix ADC And Citrix Gateway Denial Of Service Vulnerability (CTX297155)

Citrix NetScaler Gateway provides secure access control management solution.

Citrix ADC provides proven L4-7 load balancing and global server load balancing (GSLB) to ensure the best application performance and reliability.
Denial of Service vulnerability has been identified in Citrix Application Delivery Controller (ADC) formerly known as NetScaler ADC and Citrix Gateway formerly known as NetScaler Gateway.

Affected Versions:
Citrix ADC and Citrix Gateway 13.0 before 13.0-76.29
Citrix ADC and Citrix Gateway 12.1 before 12.1-61.18
Citrix ADC and NetScaler Gateway 11.1 before 11.1-65.20

QID Detection Logic(Authenticated):
This QID checks for vulnerable versions of Citrix ADC/Netscaler.

Successful exploitation of this vulnerability may allow an attacker to either crash or service unavailability of the application.

  • CVSS V3 rated as High - 6.5 severity.
  • CVSS V2 rated as Medium - 5 severity.
  • Solution

    Customers are advised to refer to CTX297155 for information pertaining to remediating this vulnerability.

    Vendor References

    CVEs related to QID 375623

    Software Advisories
    Advisory ID Software Component Link
    CTX297155 URL Logo support.citrix.com/article/CTX297155