Skip to content
COOEY

FAIL › dossier

NetScaler ADC and Gateway

PRODUCT

· dossier confidence 40%

Citrix NetScaler ADC and Gateway appliances have a history of critical security vulnerabilities, including actively exploited remote code execution flaws and denial-of-service issues, requiring careful management and mitigation strategies. This product line presents a significant security risk and demands rigorous patching and monitoring.

PROFILE
CategoryNetwork SecurityWhat they doCitrix NetScaler ADC and Gateway are application delivery controllers that provide secure remote access and load balancing. They are used to optimize application performance and enhance security for organizations of all sizes.OwnershipSubsidiary (Citrix Systems, Inc.) Websitehttps://www.citrix.com/downloads/citrix-gateway/ ↗
SECURITY POSTURE

NetScaler products have a history of critical vulnerabilities that have been actively exploited in the wild, posing a significant risk to organizations. The product has demonstrated a pattern of severe vulnerabilities, including remote code execution and denial-of-service issues.

Notable failures
  • CVE-2025-5777 (RCE, ransomware exploited)
  • CVE-2025-6543 (RCE, DoS exploited)
  • Actively exploited RCE 0-day (November 2021)
Patterns: Actively exploited RCE vulnerabilities; Denial of Service vulnerabilities; Frequent critical vulnerability disclosures
FAILURE HISTORY · 2
DATEEVENTSEVSUMMARY
2025-07-10 CVE-2025-5777 critical Citrix NetScaler ADC and Gateway suffered an out-of-bounds read vulnerability linked to ransomware that was actively exploited in the wild.
2025-06-30 CVE-2025-6543 high Citrix NetScaler ADC and Gateway suffered a buffer overflow that led to unintended control flow and Denial of Service, actively exploited in the wild.
Open questions: When was Citrix founded? · What is the current headquarters location? · What is the current ownership structure?
DOSSIER · dex-RAG synthesis · grounded in our own collection + trusted sourcesbuilt 2026-08-04 04:08:27.146815+00:00