
@TheHackersNews quick check if you run NetScaler: grep the config for samlAction or samlIdPProfile, that's the precondition. also wouldn't lean too hard on "DoS only" for a memory overflow. CVE-2025-6543 carried the same label in 2025 and webshells showed up later


