Citrix NetScaler ADC 和 Citrix NetScaler Gateway 存在 HTTP 请求解析不一致(HTTP 请求/响应 smuggling)漏洞。 受影响的产品版本如下: ADC:早于 14.1-73.37、早于 13.1-64.23、早于 14.1-73.37 FIPS 版,以及早于 13.1-37.279 和 NDcPP 版的版本; Gateway:早于 14.1-73.37 FIPS 版和早于 13.1-64.23 版的版本。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Citrix NetScaler | ADC | 0 ~ 14.1-73.37 | - |
|
| Citrix NetScaler | Gateway | 0 ~ 14.1-73.37 FIPS | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-88771 | 9.5 CRITICAL | A remote code execution vulnerability exists due to improper input validation, which can a |
| CVE-2026-88772 | 9.5 CRITICAL | Memory overflow vulnerability leading to Remote Code Execution or Denial of Service |
| CVE-2026-88775 | 8.8 HIGH | Memory overflow vulnerability leading to unpredictable or erroneous behavior or Denial of |
| CVE-2026-88776 | 8.8 HIGH | Memory overflow vulnerability leading to unpredictable or erroneous behavior or Denial of |
| CVE-2026-88778 | 8.8 HIGH | TCP Initial Sequence Number (ISN) prediction |
| CVE-2026-88777 | 8.8 HIGH | Memory overflow vulnerability leading to unpredictable or erroneous behavior or Denial of |
| CVE-2026-88774 | 7.0 HIGH | Feature policy bypass due to improper HTTP URL based expression usage |
No comments yet