First published: Tue Nov 17 2015(Updated: )
The administration UI in Citrix NetScaler Application Delivery Controller (ADC) and NetScaler Gateway before 10.1 Build 133.9, 10.5 before Build 58.11, and 10.5.e before Build 56.1505.e on NetScaler Service Delivery Appliance Service VM (SVM) devices allows attackers to obtain sensitive information via unspecified vectors.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Citrix NetScaler Service Delivery Appliance | =10.5e | |
Citrix Netscaler Gateway Firmware | =10.1 | |
Citrix Netscaler Gateway Firmware | =10.5 | |
Citrix Application Delivery Controller Firmware | =10.1 | |
Citrix Application Delivery Controller Firmware | =10.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-7998 is classified as a medium severity vulnerability due to its potential to expose sensitive information.
To remediate CVE-2015-7998, upgrade to Citrix NetScaler ADC and Gateway versions 10.1 Build 133.9, 10.5 Build 58.11, or 10.5.e Build 56.1505.e.
CVE-2015-7998 impacts Citrix NetScaler Application Delivery Controller and Gateway firmware versions prior to the specified builds.
CVE-2015-7998 allows attackers to obtain sensitive information from the administration UI of affected Citrix products.
Yes, CVE-2015-7998 can be found in Citrix NetScaler Service Delivery Appliance devices running vulnerable firmware versions.