CVE-2023-6548: Citrix NetScaler ADC and NetScaler Gateway Code Injection Vulnerability
Citrix NetScaler ADC and NetScaler Gateway contain a code injection vulnerability that allows for authenticated remote code execution on the management interface with access to NSIP, CLIP, or SNIP.
Other sources
Improper Control of Generation of Code ('Code Injection') in NetScaler ADC and NetScaler Gateway allows an attacker with access to NSIP, CLIP or SNIP with management interface to perform Authenticated (low privileged) remote code execution on Management Interface.
— NVD
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Compensating control
Restrict access to the management interfaces (NSIP, CLIP, and SNIP) for Citrix NetScaler ADC and NetScaler Gateway to trusted administrative IP addresses only—apply firewall/ACL rules or isolate the management network to prevent remote access to NSIP/CLIP/SNIP.
- Compensating control
Discontinue use of Citrix NetScaler ADC and Citrix NetScaler Gateway if vendor mitigations are unavailable.
Event History
Frequently Asked Questions
What is the severity of CVE-2023-6548?
CVE-2023-6548 has been classified as a high severity vulnerability due to its potential for authenticated remote code execution.
How do I fix CVE-2023-6548?
To fix CVE-2023-6548, you should apply the latest security patches provided by Citrix for the affected NetScaler products.
What products are affected by CVE-2023-6548?
CVE-2023-6548 affects various versions of Citrix NetScaler ADC and NetScaler Gateway.
What type of vulnerability is CVE-2023-6548?
CVE-2023-6548 is categorized as a code injection vulnerability.
Can CVE-2023-6548 be exploited remotely?
Yes, CVE-2023-6548 allows for authenticated remote code execution, which can be exploited from a remote location.