CVE-2025-5349General(citrix / netscaler_application_delivery_controller)

LOWCVSS 8.8 · HIGH

Signal is active with 2 mentions in latest observed window

Immediate actions

  • Patch citrix netscaler_application_delivery_controller systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

Improper access control on the NetScaler Management Interface in NetScaler ADC and NetScaler Gateway

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-1284

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

NONE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • netscaler_application_delivery_controller
  • netscaler_gateway

Threat summary

  • Patch or workaround signal is available
  • 2 mentions across 1 observed day

What's happening

  • Patch or workaround mentioned in 1 signal
  • General: 1 classified signal
  • 2 total mentions across 1 day

Affected systems

Vendors
Products
netscaler_application_delivery_controllernetscaler_gateway

Deep dive

Activity timeline2 mentions / 1d
01122Mentions · 2026-04-05: 2Patch / Workaround · 2026-04-05: 104-05
Signal classification2 categories
General
150.0%
Patch
150.0%
Full discourse2 posts
  • Team D4rkn3ttz@Team_D4rkn3ttz
    Patch

    IR/CERT Morning Brief Today’s brief centered on exploitable enterprise exposure and follow-on access risk: Citrix NetScaler CVE-2025-5777 / CVE-2025-5349, SAP NetWeaver abuse tied to the “10KBLAZE” cluster, SonicWall SMA credential exposure concerns, and ClickFix-style malware delivery. Bottom line: patch exposed edge systems fast, review auth/session risk, and treat criminal chatter as early warning until independently verified. #cybersecurity #threatintel #IR #CERT

    Post summary

    The brief highlights recent CVEs and urges quick patching of affected edge systems, without detailing exploit code or active attacks.

    50000463
    295 followersView on X
  • Team D4rkn3ttz@Team_D4rkn3ttz
    General

    1/ Top issues this morning: • Citrix NetScaler CVE-2025-5777 / CVE-2025-5349 • SAP NetWeaver activity linked to the “10KBLAZE” cluster • SonicWall SMA credential exposure concerns • continued ClickFix-style malware delivery risk

    Post summary

    The post lists several security concerns, including two Citrix NetScaler CVEs, without providing further technical details or actionable information.

    00000425
    295 followersView on X
CPE platform detail4 entries

4 of 4 entries

PartVendorProductVersionTarget SWTarget HW
Appcitrixnetscaler_application_delivery_controller---
Appcitrixnetscaler_application_delivery_controller---
Appcitrixnetscaler_application_delivery_controller---
Appcitrixnetscaler_gateway---

Explore more