CVE-2024-5492Open Redirect in Netscaler ADC

Severity
5.1MEDIUMNVD
EPSS
1.9%
top 16.90%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJul 10

Description

Open redirect vulnerability allows a remote unauthenticated attacker to redirect users to arbitrary websites in NetScaler ADC and NetScaler Gateway

CVSS vector

CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:A/VC:L/VI:L/VA:N/SC:N/SI:N/SA:N

Affected Packages8 packages

NVDcitrix/netscaler_gateway12.113.0-92.31+2
CVEListV5netsclaer/netscaler_adc14.125.53+5

🔴Vulnerability Details

1
GHSA
GHSA-wj5r-m28j-95q9: Open redirect vulnerability allows a remote unauthenticated attacker to redirect users to arbitrary websites in NetScaler ADC and NetScaler Gateway2024-07-10

📋Vendor Advisories

1
Citrix
NetScaler ADC and NetScaler Gateway Security Bulletin for CVE-2024-5491 and CVE-2024-54922024-07-09