QID 375624

Date Published: 2021-06-14

QID 375624: Citrix ADC And Citrix Gateway Account Hijacking Vulnerability (CTX297155)

Citrix NetScaler Gateway provides secure access control management solution.

Citrix ADC provides proven L4-7 load balancing and global server load balancing (GSLB) to ensure the best application performance and reliability.
Authentication hijacking has been identified in Citrix Application Delivery Controller (ADC) formerly known as NetScaler ADC and Citrix Gateway formerly known as NetScaler Gateway.

Affected Versions:
Citrix ADC and Citrix Gateway 13.0. before 13.0-82.41
Citrix ADC and Citrix Gateway 12.1 before 12.1-62.23
Citrix ADC and NetScaler Gateway 11.1 before 11.1-65.20

QID Detection Logic(Authenticated):
This QID checks for vulnerable versions of Citrix ADC/Netscaler.

Successful exploitation of this vulnerability may allow an attacker to steal valid user session by phishing attack if Citrix ADC or Citrix Gateway is configured as a SAML SP or a SAML IdP.

  • CVSS V3 rated as Critical - 8.1 severity.
  • CVSS V2 rated as High - 6.4 severity.
  • Solution

    Customers are advised to refer to CTX297155 for information pertaining to remediating this vulnerability.

    Vendor References

    CVEs related to QID 375624

    Software Advisories
    Advisory ID Software Component Link
    CTX297155 URL Logo support.citrix.com/article/CTX297155