
CVE-2024-12284 – Authenticated privilege escalation
https://notcve.org/view.php?id=CVE-2024-12284
19 Feb 2025 — Authenticated privilege escalation in NetScaler Console and NetScaler Agent allows. Authenticated privilege escalation in NetScaler Console and NetScaler Agent allows. • https://support.citrix.com/s/article/CTX692579-netscaler-console-and-netscaler-agent-security-bulletin-for-cve202412284?language=en_US • CWE-269: Improper Privilege Management •

CVE-2024-8535 – Authenticated user can access unintended user capabilities
https://notcve.org/view.php?id=CVE-2024-8535
12 Nov 2024 — Authenticated user can access unintended user capabilities in NetScaler ADC and NetScaler Gateway if the appliance must be configured as a Gateway (SSL VPN, ICA Proxy, CVPN, RDP Proxy) with KCDAccount configuration for Kerberos SSO to access backend resources OR the appliance must be configured as an Auth Server (AAA Vserver) with KCDAccount configuration for Kerberos SSO to access backend resources Authenticated user can access unintended user capabilities in NetScaler ADC and NetScaler Gateway if the appl... • https://support.citrix.com/s/article/CTX691608-netscaler-adc-and-netscaler-gateway-security-bulletin-for-cve20248534-and-cve20248535?language=en_US • CWE-552: Files or Directories Accessible to External Parties •

CVE-2024-8534 – Memory safety vulnerability leading to memory corruption and Denial of Service
https://notcve.org/view.php?id=CVE-2024-8534
12 Nov 2024 — Memory safety vulnerability leading to memory corruption and Denial of Service in NetScaler ADC and Gateway if the appliance must be configured as a Gateway (VPN Vserver) with RDP Feature enabled OR the appliance must be configured as a Gateway (VPN Vserver) and RDP Proxy Server Profile is created and set to Gateway (VPN Vserver) OR the appliance must be configured as a Auth Server (AAA Vserver) with RDP Feature enabled Memory safety vulnerability leading to memory corruption and Denial of Service in NetSca... • https://support.citrix.com/s/article/CTX691608-netscaler-adc-and-netscaler-gateway-security-bulletin-for-cve20248534-and-cve20248535?language=en_US • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2024-6236 – Denial of Service
https://notcve.org/view.php?id=CVE-2024-6236
10 Jul 2024 — Denial of Service in NetScaler Console (formerly NetScaler ADM), NetScaler Agent, and NetScaler SDX Denegación de servicio en NetScaler Console (anteriormente NetScaler ADM), NetScaler Agent y NetScaler SDX Denial of Service in NetScaler Console (formerly NetScaler ADM), NetScaler Agent, and NetScaler SDX • https://support.citrix.com/article/CTX677998 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2024-6235 – Sensitive information disclosure
https://notcve.org/view.php?id=CVE-2024-6235
10 Jul 2024 — Sensitive information disclosure in NetScaler Console Divulgación de información confidencial en NetScaler Console Sensitive information disclosure in NetScaler Console • https://support.citrix.com/article/CTX677998 • CWE-287: Improper Authentication •

CVE-2024-5491 – Denial of Service
https://notcve.org/view.php?id=CVE-2024-5491
10 Jul 2024 — Denial of Service in NetScaler ADC and NetScaler Gateway in NetScaler Denegación de servicio en NetScaler ADC y NetScaler Gateway en NetScaler • https://support.citrix.com/article/CTX677944/netscaler-adc-and-netscaler-gateway-security-bulletin-for-cve20245491-and-cve20245492 •