Cloud Software Group reports two critical vulnerabilities, CVE-2025-5349 and CVE-2025-5777, affecting NetScaler ADC and Gateway products. These flaws can lead to unauthorized access and memory overreads, requiring immediate software updates. #NetScalerADC #NetScalerGateway #CVE5349 #CVE5777
Keypoints
- The vulnerabilities impact specific versions of NetScaler ADC and Gateway, especially outdated, unsupported releases.
- CVE-2025-5349 is a high-severity access control flaw with a CVSS score of 8.7.
- CVE-2025-5777 involves out-of-bounds memory read with a CVSS score of 9.3, making it even more critical.
- Organizations are urged to upgrade their systems to secure versions immediately to prevent exploitation.
- Customers must also terminate active sessions after updating to ensure vulnerability mitigation.
- Citrix-managed cloud services are unaffected, as updates are handled by Cloud Software Group.
Read More: https://thecyberexpress.com/netscaler-adc-gateway-flaw-cve-2025-5349/