CVE-2024-8534
Memory safety vulnerability leading to memory corruption and Denial of Service in NetScaler ADC and Gateway if the appliance must be configured as a Gateway (VPN Vserver) with RDP Feature enabled OR the appliance must be configured as a Gateway (VPN Vserver) and RDP Proxy Server Profile is created and set to Gateway (VPN Vserver) OR the appliance must be configured as a Auth Server (AAA Vserver) with RDP Feature enabled
Published:Nov 12, 2024
Last Modified:Jul 25, 2025
EPS:Nov 12, 2024
EPSS Score:0.00571
CVSS Score:8.1
Affected Products
Vendor
Product
Action
Vendor
Citrix
Product
Netscaler Application Delivery Controller
Citrix
Netscaler Application Delivery Controller
Vendor
Citrix
Product
Netscaler Gateway
Citrix
Netscaler Gateway
Vendor
Netscaler
Product
Adc
Netscaler
Adc
Vendor
Netscaler
Product
Gateway
Netscaler
Gateway
Vendor
Netscaler
Product
Netscaler-adc 12.1-fips
Netscaler
Netscaler-adc 12.1-fips
Vendor
Netscaler
Product
Netscaler-adc 12.1-ndcpp
Netscaler
Netscaler-adc 12.1-ndcpp
Vendor
Netscaler
Product
Netscaler-adc 13.1-fips
Netscaler
Netscaler-adc 13.1-fips
Exploits
No exploit reference
Common Weakness Enumeration
Common Attack Pattern Enumeration and Classification (CAPEC)
Related CVEs
Common Vulnerability Scoring System
Attack Vector
Network
Adjacent
Local
Physical
Privileges Required
None
Low
High
User Interaction
None
Required
Scope
Unchanged
Changed
Confidentiality
None
Low
High
Integrity
None
Low
High
Availability
None
Low
High
