imPC@ndo IT

Tracker / CVE-2021-22956

CVE-2021-22956

High 7.5

An uncontrolled resource consumption vulnerability exists in Citrix ADC <13.0-83.27, <12.1-63.22 and 11.1-65.23 that could allow an attacker with access to NSIP or SNIP with management interface access to cause a temporary disruption of the Management GUI, Nitro API, and RPC communication.

Affected products and versions

citrix application_delivery_controller_firmware · … → 11.1-65.23
citrix application_delivery_controller_firmware · 12.1 → 12.1-63.22
citrix application_delivery_controller_firmware · 13.0 → 13.0-83.27
citrix gateway · … → 11.1-65.23
citrix gateway · 12.1 → 12.1-63.22
citrix gateway · 13.0 → 13.0-65.23
citrix sd-wan · … → 10.2.9c
citrix sd-wan · 11.4.0 → 11.4.2

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References