Citrix Alert
7261Warning Date
Severity Level
Warning Number
Target Sector
13 December, 2022
● Critical
2022-5390
All
Citrix has released security updates to address a vulnerability in the following versions of Citrix Gateway and Citrix ADC:
- Citrix ADC and Citrix Gateway 13.0 before 13.0-58.32
- Citrix ADC and Citrix Gateway 12.1 before 12.1-65.25
- Citrix ADC 12.1-FIPS before 12.1-55.291
- Citrix ADC 12.1-NDcPP before 12.1-55.291
Remote attacker could exploit this vulnerability by executing arbitrary code.
*The vulnerability requires that Citrix ADC or Citrix Gateway to be configured as a SAML SP or a SAML IdP.
The CERT team encourages users to review Citrix security advisory and apply the necessary updates: