Two High-Severity Flaws Found in NetScaler Products: CVE-2025-5349 and CVE-2025-5777

Two High-Severity Flaws Found in NetScaler Products: CVE-2025-5349 and CVE-2025-5777

Cloud Software Group reports two critical vulnerabilities, CVE-2025-5349 and CVE-2025-5777, affecting NetScaler ADC and Gateway products. These flaws can lead to unauthorized access and memory overreads, requiring immediate software updates. #NetScalerADC #NetScalerGateway #CVE5349 #CVE5777

Keypoints

  • The vulnerabilities impact specific versions of NetScaler ADC and Gateway, especially outdated, unsupported releases.
  • CVE-2025-5349 is a high-severity access control flaw with a CVSS score of 8.7.
  • CVE-2025-5777 involves out-of-bounds memory read with a CVSS score of 9.3, making it even more critical.
  • Organizations are urged to upgrade their systems to secure versions immediately to prevent exploitation.
  • Customers must also terminate active sessions after updating to ensure vulnerability mitigation.
  • Citrix-managed cloud services are unaffected, as updates are handled by Cloud Software Group.

Read More: https://thecyberexpress.com/netscaler-adc-gateway-flaw-cve-2025-5349/