CVE-2023-6548

MEDIUMCVSS 5.53% EPSSKEV — known exploited🧨 Public exploit (GreyNoise)

Improper Control of Generation of Code ('Code Injection') in NetScaler ADC and NetScaler Gateway allows an attacker with access to NSIP, CLIP or SNIP with management interface to perform Authenticated (low privileged) remote code execution on Management Interface.

Published 2024-01-17 · last modified 2026-06-17

Affected products

VendorProduct
citrixnetscaler_application_delivery_controller
citrixnetscaler_gateway
cloud software groupnetscaler adc
cloud software groupnetscaler gateway

Full record at NVD ↗

← Get alerted the moment a CVE hits your gear — subscribe free

Ncerio by BeyondNets · data from NVD, CISA KEV, EPSS.