vulnerability
Warning: Two Unpatched Citrix NetScaler RCE Zero-Days Under Active Exploitation
CriticalCVSS 9.8
Summary
Two unpatched remote code execution (RCE) vulnerabilities are actively being exploited in Citrix NetScaler appliances, according to security firm watchTowr. Administrators are advised to shut down their appliances until a patch is available, as attackers could have gained access before a fix was released. Citrix has not yet confirmed the flaws or released a fix, and the decision of whether to keep appliances online, isolate them, or power them off remains with administrators.
Summary written automatically in our own words from the original article, which belongs to its publisher and remains the reference. It may contain errors. Sources & data
