Skip to main content
0-Doubt
NewsInvestorsQuestionnairesDeveloperHelp
AnonymousSign in
0-Doubt — neutral IT/Security research
BrowseResellersCertified analystsRFI/RFP questionnairesHow trust worksHelp & FAQAPI
  1. Home/
  2. NetScaler/
  3. Citrix NetScaler

Citrix NetScaler

AI-generated from public sourcesAuto-generated by 0-Doubt from public vendor materials. Not verified by the vendor or an analyst. Check the freshness indicator.Lowest independence — unverified. A higher label means a more independent source — not a better product.How trust works →Secure coding rating: 0/100How this score is computedA product with no known CVEs starts at a neutral score and climbs the longer it goes without one; a product with known CVEs is penalized by severity instead. This one has 100 known CVEs (vendor-level match — see the CVE list below) and is tracked as ~39 days old in our catalog (a stand-in for real release date, which we don't track). The platform admin controls the formula's weights.

Application delivery controller for optimizing app performance and security

by NetScaler · netscaler.com · source ↗

Known CVEs (100)About this listSourced from the public NVD database, matched by vendor name. Shown here at the vendor level — we don't track per-product/version data, so a listed CVE may affect a different product from this vendor, not necessarily this one. “New” means published within the last 30 days. “Actively exploited” means CISA's Known Exploited Vulnerabilities (KEV) catalog confirms real-world exploitation, not just a theoretical severity score.

RSS ⇢
  • CVE-2026-4368 ↗2026

    Race Condition in NetScaler ADC and NetScaler Gateway when appliance is configured as Gateway (SSL VPN, ICA Proxy, CVPN, RDP Proxy) or AAA virtual server leading to User Session Mixup

  • CVE-2026-3055 ↗⚠ actively exploitedCRITICAL 9.82026

    Insufficient input validation in NetScaler ADC and NetScaler Gateway when configured as a SAML IDP leading to memory overread

  • CVE-2025-12101 ↗2025

    Cross-Site Scripting (XSS) in NetScaler ADC and NetScaler Gateway when the appliance is configured as a Gateway (VPN virtual server, ICA Proxy, CVPN, RDP Proxy) OR AAA virtual server

  • CVE-2025-8424 ↗2025

    Improper access control on the NetScaler Management Interface in NetScaler ADC and NetScaler Gateway when an attacker can get access to the appliance NSIP, Cluster Management IP or local GSLB Site IP …

  • CVE-2025-7776 ↗CRITICAL 9.82025

    Memory overflow vulnerability leading to unpredictable or erroneous behavior and Denial of Service in NetScaler ADC and NetScaler Gateway when NetScaler is configured as a Gateway (VPN virtual server,…

  • CVE-2025-7775 ↗⚠ actively exploitedCRITICAL 9.82025

    Memory overflow vulnerability leading to Remote Code Execution and/or Denial of Service in NetScaler ADC and NetScaler Gateway when NetScaler is configured as Gateway (VPN virtual server, ICA Proxy, C…

  • CVE-2025-6543 ↗⚠ actively exploitedCRITICAL 9.82025

    Memory overflow vulnerability leading to unintended control flow and Denial of Service in NetScaler ADC and NetScaler Gateway when configured as Gateway (VPN virtual server, ICA Proxy, CVPN, RDP Proxy…

  • CVE-2025-5349 ↗HIGH 8.82025

    Improper access control on the NetScaler Management Interface in NetScaler ADC and NetScaler Gateway

  • CVE-2025-4365 ↗HIGH 7.52025

    Arbitrary file read in NetScaler Console and NetScaler SDX (SVM)

  • CVE-2024-12284 ↗HIGH 8.82025

    Authenticated privilege escalation in NetScaler Console and NetScaler Agent allows.

  • CVE-2024-8535 ↗HIGH 8.12024

    Authenticated user can access unintended user capabilities in NetScaler ADC and NetScaler Gateway if the appliance must be configured as a Gateway (SSL VPN, ICA Proxy, CVPN, RDP Proxy) with KCDAccount…

  • CVE-2024-8534 ↗HIGH 8.12024

    Memory safety vulnerability leading to memory corruption and Denial of Service in NetScaler ADC and Gateway if the appliance must be configured as a Gateway (VPN Vserver) with RDP Feature enabled OR t…

  • CVE-2024-6236 ↗HIGH 7.52024

    Denial of Service in NetScaler Console (formerly NetScaler ADM), NetScaler Agent, and NetScaler SDX

  • CVE-2024-5492 ↗MEDIUM 6.12024

    Open redirect vulnerability allows a remote unauthenticated attacker to redirect users to arbitrary websites in NetScaler ADC and NetScaler Gateway

  • CVE-2024-5491 ↗HIGH 7.52024

    Denial of Service in NetScaler ADC and NetScaler Gateway in NetScaler

  • CVE-2023-6549 ↗⚠ actively exploitedHIGH 8.22024

    Improper Restriction of Operations within the Bounds of a Memory Buffer in NetScaler ADC and NetScaler Gateway allows Unauthenticated Denial of Service and Out-Of-Bounds Memory Read

  • CVE-2023-6548 ↗⚠ actively exploitedMEDIUM 5.52024

    Improper Control of Generation of Code ('Code Injection') in NetScaler ADC and NetScaler Gateway allows an attacker with access to NSIP, CLIP or SNIP with management interface to perform Authenticated…

  • CVE-2023-4967 ↗HIGH 8.22023

    Denial of Service in NetScaler ADC and NetScaler Gateway when configured as a Gateway (VPN virtual server, ICA Proxy, CVPN, RDP Proxy) or AAA Virtual Server

  • CVE-2023-4966 ↗⚠ actively exploitedCRITICAL 9.42023

    Sensitive information disclosure in NetScaler ADC and NetScaler Gateway when configured as a Gateway (VPN virtual server, ICA Proxy, CVPN, RDP Proxy) or AAA  virtual server.

  • CVE-2023-2858 ↗MEDIUM 5.32023

    NetScaler file parser crash in Wireshark 4.0.0 to 4.0.5 and 3.6.0 to 3.6.13 allows denial of service via crafted capture file

  • …and 80 more

Materials

4

Datasheets

  • Tolly Group Validates Netscaler Adc Over F5 ↗
  • Tibco And Netscaler Better Together ↗
  • Netscaler Fips Data Sheet ↗
  • Netscaler Data Sheet ↗

Other Network Firewall (NGFW) products

see all →
  • AhnLab Network PLUS · AhnLab
  • Akamai Guardicore Segmentation · Akamai
  • Albarius · Albarius
  • AlgoSec AlgoBot · AlgoSec
  • AlgoSec Firewall Analyzer · AlgoSec
  • Allot Secure · Allot
  • Array ASI SSL Intercept · Array Networks
  • Barracuda Network Protection · Barracuda