CVE-2026-8452
KEV
🔴 Łataj teraz
Przepełnienie bufora w NetScaler ADC i Gateway prowadzi do błędów i odmowy usługi.
CVSS
9.8
EPSS
1.6%
Exploit
weaponized
Vendor
citrix
Opis źródłowy (NVD)
Memory overflow vulnerability NetScaler ADC and NetScaler Gateway leading to unpredictable or erroneous behavior and Denial of Service if the appliance is configured as a Gateway (SSL VPN, ICA Proxy, CVPN, RDP Proxy) or AAA virtual server
dos
Brak patcha
Źródła i daty
| Źródło | Wartość |
|---|---|
| NVD – CVSS | 9.8 |
| CISA KEV (aktywnie wykorzystywane) | Tak |
| FIRST EPSS (prawdopodobieństwo exploita) | 1.6% |
| Opublikowano (NVD) | 2026-06-30 13:19:33 UTC |
| Ostatnia modyfikacja (NVD) | 2026-08-27 04:18:00 UTC |
Referencje
- https://support.citrix.com/support-home/kbsearch/article?articleNumber=CTX696604 (50a63c94-1ea7-4568-8c11-eb79e7c5a2b5) [Vendor Advisory]
- https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2026-8452 (134c704f-9b21-4f2e-91b3-4a467353bcc0) [US Government Resource]