EXPOSURES › CVE-2025-5777
CVE-2025-5777
CRITICAL ⌖ ON CISA KEV · EXPLOITEDCitrix NetScaler ADC and Gateway suffered an out-of-bounds read vulnerability linked to ransomware that was actively exploited in the wild.
The vulnerability allowed memory overreads when the NetScaler was configured as a Gateway or AAA virtual server, enabling attackers to execute arbitrary code. DIB organizations must patch immediately and monitor for ransomware activity, as this flaw was actively exploited in the wild and linked to ransomware campaigns.
Shame score — The vulnerability was actively exploited in the wild and linked to ransomware, indicating severe negligence and avoidable exposure.
▸ RECOMMENDED ACTION Actively exploited (CISA KEV) — remediate now, ahead of your normal patch cycle.
Citrix NetScaler ADC and Gateway contain an out-of-bounds read vulnerability due to insufficient input validation. This vulnerability can lead to memory overread when the NetScaler is configured as a Gateway (VPN virtual server, ICA Proxy, CVPN, RDP Proxy) OR AAA virtual server.
| PRODUCT | STATUS |
|---|---|
| Citrix for Government Citrix |
Authorized |