CVE-2017-14602

7.2 HIGH
Published: September 26, 2017 Modified: May 13, 2026
View on NVD

Description

A vulnerability has been identified in the management interface of Citrix NetScaler Application Delivery Controller (ADC) and NetScaler Gateway 10.1 before build 135.18, 10.5 before build 66.9, 10.5e before build 60.7010.e, 11.0 before build 70.16, 11.1 before build 55.13, and 12.0 before build 53.13 (except for build 41.24) that, if exploited, could allow an attacker with access to the NetScaler management interface to gain administrative access to the appliance.

AI Explanation

Get an AI-powered plain-language explanation of this vulnerability and remediation steps.

Login to generate AI explanation

CVSS v3.x Details

0.0 Low Medium High Critical 10.0
Vector String
CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

References to Advisories, Solutions, and Tools

Patch Vendor Advisory Exploit Third Party Advisory
http://www.securityfocus.com/bid/100980
Source: cve@mitre.org
Third Party Advisory VDB Entry
https://support.citrix.com/article/CTX227928
Source: cve@mitre.org
Mitigation Patch Vendor Advisory
http://www.securityfocus.com/bid/100980
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory VDB Entry
https://support.citrix.com/article/CTX227928
Source: af854a3a-2127-422b-91ae-364da2661108
Mitigation Patch Vendor Advisory
https://support.citrix.com/article/CTX228091
Source: af854a3a-2127-422b-91ae-364da2661108

6 reference(s) from NVD

Quick Stats

CVSS v3 Score
7.2 / 10.0
EPSS (Exploit Probability)
2.4%
82th percentile
Exploitation Status
Not in CISA KEV

Weaknesses (CWE)

Affected Vendors

citrix