Executive brief
NetScaler ADC and Gateway are networking appliances used for application delivery and secure remote access. A vulnerability in these systems could allow an attacker to read sensitive information from the device's memory or cause a service disruption if the device is acting as an identity provider. This could lead to the exposure of confidential data or impact the availability of remote access services for employees.
Technical details
A memory overread vulnerability exists in NetScaler ADC and NetScaler Gateway due to insufficient input validation when the devices are configured as a SAML Identity Provider (IdP). An unauthenticated remote attacker can exploit this flaw by sending specially crafted requests to the SAML endpoint. Successful exploitation can allow the attacker to read sensitive data from the system's memory or cause a denial-of-service condition. The vulnerability affects multiple versions including 14.1 and 13.1, and patches have been released to address the issue.
Affected products
- NetScaler ADC 14.1 before 72.61, 13.1 before 63.18, 14.1 FIPS before 72.61, 13.1 FIPS and NDcPP before 37.272
- NetScaler Gateway 14.1 before 72.61, 13.1 before 63.18
Timeline
- 2026-06-30: disclosed
- 2026-06-30: advisory