Jan. 17, 2024, 12:19 a.m. | Satnam Narang, Scott Caveza

Cyber Exposure Alerts www.tenable.com

Two zero-day vulnerabilities in Citrix NetScaler ADC and NetScaler Gateway have been exploited in the wild. Urgent patching is required to address these flaws.

Background

On January 16, Citrix published an advisory for two new zero-day vulnerabilities in its NetScaler Application Delivery Controller (ADC) and NetScaler Gateway appliances:

CVEDescriptionSeverity
CVE-2023-6548Citrix NetScaler ADC and Gateway Authenticated Remote Code Execution (RCE) VulnerabilityMedium
CVE-2023-6549Citrix NetScaler ADC and Gateway Denial of Service VulnerabilityHigh

According to Citrix, these flaws …

adc address advisory application application delivery application delivery controller citrix citrix netscaler citrix netscaler adc controller cve delivery exploited flaws gateway january netscaler netscaler adc netscaler gateway patching urgent vulnerabilities zero-day zero-day vulnerabilities

Social Engineer For Reverse Engineering Exploit Study

@ Independent study | Remote

Cyber Security Culture – Communication and Content Specialist

@ H&M Group | Stockholm, Sweden

Container Hardening, Sr. (Remote | Top Secret)

@ Rackner | San Antonio, TX

GRC and Information Security Analyst

@ Intertek | United States

Information Security Officer

@ Sopra Steria | Bristol, United Kingdom

Casual Area Security Officer South Down Area

@ TSS | County Down, United Kingdom