Skip to main content

Citrix Releases Security Updates for Multiple Products

Report a cyber attack: call 0300 303 5222 or email [email protected]

Affected platforms

The following platforms are known to be affected:

Citrix ADC and Citrix Gateway - versions prior to 13.0-58.30

Citrix ADC and NetScaler Gateway - versions 11.x prior to 11.1-64.14,  12.0.x prior to 12.0-63.21, and 12.1.x prior to 12.1-57.18

Citrix Gateway Plug-in for Linux - versions prior to  1.0.0.137

Citrix SD-WAN WANOP - versions 10.2.x prior to 10.2.7, 11.0.x prior to 11.0.3d, and 11.1.x prior to 11.1.1a

NetScaler ADC and NetScaler Gateway - versions prior to 10.5-70.18


Threat details

Introduction

Citrix has released details of multiple vulnerabilities affecting their ADC, Gateway, and SD-WAN WANOP products. A remote unauthenticated attacker could exploit some or all of these vulnerabilities to execute arbitrary commands, escalate privileges, access sensitive information, perform cross-site scripting attacks, or cause denial-of-service conditions.


Remediation advice

Affected organisations are encouraged to review Citrix security bulletin CTX276888 and apply any relevant updates immediately.


Remediation steps

Type Step
Patch

Apply the relevant updates.


https://support.citrix.com/article/CTX276688

Last edited: 9 July 2020 10:28 am