CVE-2025-5777
🔥 Known Exploited (CISA KEV)CRITICAL
9.3
CVSS Severity Score
Vulnerability Description
Insufficient input validation leading to memory overread when the NetScaler is configured as a Gateway (VPN virtual server, ICA Proxy, CVPN, RDP Proxy) OR AAA virtual server
Affected Platforms (CPE)
📦
Citrix
Netscaler Application Delivery Controller
>= 12.1 and < 12.1-55.328>= 13.1 and < 13.1-37.235>= 13.1 and < 13.1-58.32>= 14.1 and < 14.1-43.56
📦
Citrix
Netscaler Gateway
>= 13.1 and < 13.1-58.32>= 14.1 and < 14.1-43.56
