CVE-2023-4966Critical· 9.4▾ Hadal⚠ Exploited in the wildPoC availableSensitive information disclosure in NetScaler ADC and NetScaler Gateway when configured as a Gateway (VPN virtual server, ICA Proxy, CVPN, RDP Proxy) or AAA virtual server.
▾ Hadal zone — Critical and actively exploited (CISA KEV / 0day)
impact 51.7 · likelihood 20 · exploitation 25 · ransomware 5
A public proof-of-concept already exists for this vulnerability — see Exploit availability below.
Public exploit / PoC code seen in 3 sources. Availability, not in-the-wild use.
Exploit-prediction probability, daily snapshots since Jul 31.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via NVD
Federal remediation due Nov 8, 2023
Last analysed / modified upstream
100%
14 GitHub repos · Metasploit ×1 · Nuclei ×1
Added to the CISA catalog on Oct 18, 2023. Federal remediation due Nov 8, 2023. View catalog ↗
Sensitive information disclosure in NetScaler ADC and NetScaler Gateway when configured as a Gateway (VPN virtual server, ICA Proxy, CVPN, RDP Proxy) or AAA virtual server.
netscaler_application_delivery_controller >= 12.1, < 12.1-55.300netscaler_application_delivery_controller >= 13.0, < 13.0-92.19netscaler_application_delivery_controller >= 13.1, < 13.1-37.164netscaler_application_delivery_controller >= 13.1, < 13.1-49.15netscaler_application_delivery_controller >= 14.1, < 14.1-8.50netscaler_gateway >= 13.0, < 13.0-92.19netscaler_gateway >= 13.1, < 13.1-49.15netscaler_gateway >= 14.1, < 14.1-8.50Upgrade past the affected range:
netscaler_application_delivery_controller 14.1-8.50netscaler_gateway 14.1-8.50Field changes observed since this record was first indexed.
Connected by shared product, vendor, weakness, or advisory.
CVE-2026-19490Critical· 9.8Vulnerability in NetScaler ADC and NetScaler Gateway. This issue affects ADC: from 14.1 through 73.32 and from 13.1 through 63.21; Gateway: from 14.1 through 73.32 and from 13.1 through 63.21.
CVE-2023-3519Critical· 9.8Unauthenticated remote code execution
CVE-2025-5777High· 7.5Insufficient input validation leading to memory overread when the NetScaler is configured as a Gateway (VPN virtual server, ICA Proxy, CVPN, RDP Proxy) OR AAA virtual server
CVE-2015-2546High· 8.2The kernel-mode driver in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT Gold and 8.1, and Windows 10 allows local users to gain privile…
CVE-2020-0796Critical· 10.0A remote code execution vulnerability exists in the way that the Microsoft Server Message Block 3.1.1 (SMBv3) protocol handles certain requests, aka 'Windows SMBv3 Client/Server Remote Code Execution Vulnerability'.
CVE-2019-19781Critical· 9.8An issue was discovered in Citrix Application Delivery Controller (ADC) and Gateway 10.5, 11.1, 12.0, 12.1, and 13.0