CVE-2023-6548
Citrix urges immediate upgrades of NetScaler amid widespread exploitation attempts
Improper Control of Generation of Code ('Code Injection') in NetScaler ADC and NetScaler Gateway allows an attacker with access to NSIP, CLIP or SNIP with management interface to perform Authenticated (low privileged) remote code execution on Management Interface.
Coverage 1 source
-
2026-09-28
Cybersecurity Dive
critical
Citrix urges immediate upgrades of NetScaler amid widespread exploitation attempts
Citrix urges immediate upgrades of NetScaler due to widespread exploitation attempts of critical zero-day flaws.
Mentioned with
Also covered
- CVE-2026-86950 Apple iOS and iPadOS
- CVE-2023-25608 Fortinet FortiAP-W2
- CVE-2026-88772 Memory overflow vulnerability leading to Remote Code Execution or Denial of Service
- CVE-2026-88771 A remote code execution vulnerability exists due to improper input validation, which can allow an unauthenticated attacker to execute arbitrary commands
- CVE-2026-88778 TCP Initial Sequence Number (ISN) prediction