Known vulnerabilities in NetScaler Console (formerly NetScaler ADM)
Vendor:
Citrix
Software CPE:
cpe:2.3:a:citrix:netscaler_console:*:*:*:*:*:*:*:*
Website:
https://www.citrix.com/
Total vulnerabilities:
6
Public exploits:
1
Known exploited (KEV):
0
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
Vulnerabilities (6)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU111238 - Improper Access Control CVE-2025-4365 |
CWE-284 | Medium | 13.1.58.32, 14.1.47.46 | 17.06.2025 |
SB2025061750 |
||
| #VU104048 - Improper Privilege Management CVE-2024-12284 |
CWE-269 | Low | 13.1-56.18, 14.1-38.53 | 18.02.2025 |
SB2025021852 |
||
| #VU94078 - Memory corruption CVE-2024-6236 |
CWE-119 | Low | 13.0-92.31, 13.1-53.22, 14.1-25.53 | 10.07.2024 |
SB2024071061 |
||
| #VU94077 - Improper Authentication CVE-2024-6235 |
CWE-287 | Medium | 14.1-25.53 | 10.07.2024 |
SB2024071061 |
||
| #VU93515 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') CVE-2006-5051 |
CWE-362 | Critical | 13.0-92.31, 13.1-53.24, 14.1-25.56 | 01.07.2024 |
SB2006092801 SB2024071109 SB2024071110 and 5 more |
||
| #VU93513 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') CVE-2024-6387 |
CWE-362 | High | 13.0-92.31, 13.1-53.24, 14.1-25.56 | 01.07.2024 |
SB2024070144 SB2024070145 SB2024070152 and 89 more |