CyberzSOC

Publication detail
← Back to advisories & guidance

2025-033: Critical Vulnerabilities in Citrix NetScaler Products ↗ source

August 26, 2025 CERT-EU Advisory

Summary

Citrix warns that exploits of the critical vulnerability, CVE-2025-7775, have been observed on unmitigated It is recommended to update affected assets as soon as possible. The vulnerability CVE-2025-7775, with a CVSS score of 9.2, is due to improper restriction of operations within the bounds of a memory buffer, leading to Remote Code Execution (RCE) and/or Denial of Service [1]. To be exploitable, NetScaler must have one of the following servers of type (HTTP, SSL or HTTP_QUIC) bound with IPv6 services or servicegroups serversoftype(HTTP,SSLorHTTP_QUIC)boundwithDBSIPv6servicesorservicegroups The vulnerability CVE-2025-7776, with a CVSS score of 8.8, is due to improper restriction of operations within the bounds of a memory buffer, leading to unpredictable or erroneous behaviour and Denial of Service. To be exploitable, NetScaler must be configured as Gateway (VPN virtual server, ICA Proxy, CVPN, RDP Proxy) with PCoIP Profile bounded to it. The vulnerability CVE-2025-8424, with a CVSS score of 8.7, is due to improper access control.

News Coverage

No coverage found in monitored research blogs or news feeds.

CVEs Referenced in This Publication

CVECVSSAffected
CVE-2025-7775 9.2 Critical Citrix NetScaler Citrix NetScaler ADC and NetScaler Gateway contain a memory overflow vulnerability that could allow for remote code execution and/or denial of servic…
CVE-2025-7776 8.8 High NetScaler ADC Memory overflow vulnerability leading to unpredictable or erroneous behavior and Denial of Service in NetScaler ADC and NetScaler Gateway when NetSca…
CVE-2025-8424 8.7 High NetScaler ADC Improper access control on the NetScaler Management Interface in NetScaler ADC and NetScaler Gateway when an attacker can get access to the appliance…

Extracted from the publication text. Each CVE links to its tracked detail page.

Vendors Named in This Publication

Each vendor links to its Known Exploited Vulnerabilities catalog page. Only vendors that appear in the KEV catalog are listed, either because the publication cites one of their KEV entries or because it names them directly.