Exploited Vulnerabilities Daily
🌐 日本語

ホーム › Citrix

CVE-2023-4966: Citrix NetScaler ADC and NetScaler Gateway

EPSS99.9%KEV 1739件中35位
CVEの年2023同じ年に追加
同じベンダーの登録27
同じ製品の登録5
項目内容
ベンダーCitrix
製品NetScaler ADC and NetScaler Gateway
脆弱性の名前Citrix NetScaler ADC and NetScaler Gateway Buffer Overflow Vulnerability
KEVへの追加日2023年10月18日
米政府機関の対応期限2023年11月8日
ランサムウェアでの悪用確認あり
CWECWE-119

CISAの説明(英語)

Citrix NetScaler ADC and NetScaler Gateway contain a buffer overflow vulnerability that allows for sensitive information disclosure when configured as a Gateway (VPN virtual server, ICA Proxy, CVPN, RDP Proxy) or AAA virtual server.

同じ製品のほかの登録

CVEベンダー・製品追加日EPSSランサムウェア
CVE-2026-8452Citrix NetScaler ADC and NetScaler Gateway2026年8月26日1.0%不明
CVE-2023-6549Citrix NetScaler ADC and NetScaler Gateway2024年1月17日57.6%不明
CVE-2023-6548Citrix NetScaler ADC and NetScaler Gateway2024年1月17日3.1%不明
CVE-2023-3519Citrix NetScaler ADC and NetScaler Gateway2023年7月19日99.7%確認あり

NVD — CVE-2023-4966

CISAの既知の悪用された脆弱性カタログ(KEV)のデータです。EPSSはFIRSTが公表する「今後30日以内に悪用が観測される確率」の推定値で、週1回更新しています。対応は必ず各ベンダーの公式情報に従ってください。
このページについて

2023年10月18日にCISAの既知の悪用された脆弱性カタログ(KEV)に追加された、CitrixのNetScaler ADC and NetScaler Gatewayの脆弱性です。