Over 28,000 Citrix instances remain exposed to critical RCE flaw CVE-2025-7775
超过2.8万个Citrix NetScaler实例暴露于严重RCE漏洞CVE-2025-7775(CVSS 9.2),该漏洞已被积极利用。Citrix已修复相关问题,但未缓解设备仍受威胁。CISA要求美联邦机构于8月28日前完成修复。大部分受影响实例位于美国、德国等。 2025-8-27 19:5:11 Author: securityaffairs.com(查看原文) 阅读量:22 收藏

Over 28,000 Citrix instances remain exposed to critical RCE flaw CVE-2025-7775

Over 28,200 Citrix NetScaler ADC/Gateway instances remain exposed to critical RCE flaw CVE-2025-7775, already under active exploitation.

Experts at the Shadowserver Foundation warn that more than 28,200 Citrix instances are vulnerable to the vulnerability CVE-2025-7775, which is under active exploitation.

CVE-2025-7775 (CVSS score: 9.2) is a memory overflow vulnerability leading to Remote Code Execution and/or Denial-of-Service.

This week, Citrix addressed three security flaws (CVE-2025-7775, CVE-2025-7776, CVE-2025-8424) in NetScaler ADC and NetScaler Gateway, including one (CVE-2025-7775) that it said has been actively exploited in the wild.

“Exploits of CVE-2025-7775 on unmitigated appliances have been observed.” reads the advisory.

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) added the Citrix NetScaler flaw to its Known Exploited Vulnerabilities (KEV) catalog. The US Agency orders federal agencies to fix the vulnerabilities by August 28, 2025.

Shadowserver Foundation researchers reported that most of the vulnerable instances are located in the United States (10,100), followed by Germany (4,300), the United Kingdom (1,400), the Netherlands (1,300), and Switzerland (1,300).

Follow me on Twitter: @securityaffairs and Facebook and Mastodon

Pierluigi Paganini

(SecurityAffairs – hacking, CVE-2025-7775)




文章来源: https://securityaffairs.com/181614/hacking/over-28000-citrix-instances-remain-exposed-to-critical-rce-flaw-cve-2025-7775.html
如有侵权请联系:admin#unsafe.sh