imPC@ndo IT

Tracker / CVE-2021-22955

CVE-2021-22955

High 7.5

A unauthenticated denial of service vulnerability exists in Citrix ADC <13.0-83.27, <12.1-63.22 and 11.1-65.23 when configured as a VPN (Gateway) or AAA virtual server could allow an attacker to cause a temporary disruption of the Management GUI, Nitro API, and RPC communication.

Affected products and versions

citrix application_delivery_controller_firmware · … → 11.1-65.23
citrix application_delivery_controller_firmware · 12.1 → 12.1-63.22
citrix application_delivery_controller_firmware · 13.0 → 13.0-83.27
citrix gateway · … → 11.1-65.23
citrix gateway · 12.1 → 12.1-63.22
citrix gateway · 13.0 → 13.0-83.27

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References