CVE-2024-8535
Authenticated user can access unintended user capabilities
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
Authenticated user can access unintended user capabilities in NetScaler ADC and NetScaler Gateway if the appliance must be configured as a Gateway (SSL VPN, ICA Proxy, CVPN, RDP Proxy) with KCDAccount configuration for Kerberos SSO to access backend resources OR the appliance must be configured as an Auth Server (AAA Vserver) with KCDAccount configuration for Kerberos SSO to access backend resources
Authenticated user can access unintended user capabilities in NetScaler ADC and NetScaler Gateway if the appliance must be configured as a Gateway (SSL VPN, ICA Proxy, CVPN, RDP Proxy) with KCDAccount configuration for Kerberos SSO to access backend resources OR the appliance must be configured as an Auth Server (AAA Vserver) with KCDAccount configuration for Kerberos SSO to access backend resources
CVSS Scores
SSVC
- Decision:Track*
Timeline
- 2024-09-06 CVE Reserved
- 2024-11-12 CVE Published
- 2024-11-21 CVE Updated
- 2025-03-30 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-552: Files or Directories Accessible to External Parties
CAPEC
References (1)
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
NetScaler Search vendor "NetScaler" | NetScaler ADC Search vendor "NetScaler" for product "NetScaler ADC" | >= 14.1 < 29.72 Search vendor "NetScaler" for product "NetScaler ADC" and version " >= 14.1 < 29.72" | en |
Affected
| ||||||
NetScaler Search vendor "NetScaler" | NetScaler ADC Search vendor "NetScaler" for product "NetScaler ADC" | >= 13.1 < 55.34 Search vendor "NetScaler" for product "NetScaler ADC" and version " >= 13.1 < 55.34" | en |
Affected
| ||||||
NetScaler Search vendor "NetScaler" | NetScaler Gateway Search vendor "NetScaler" for product "NetScaler Gateway" | >= 14.1 < 29.72 Search vendor "NetScaler" for product "NetScaler Gateway" and version " >= 14.1 < 29.72" | en |
Affected
| ||||||
NetScaler Search vendor "NetScaler" | NetScaler Gateway Search vendor "NetScaler" for product "NetScaler Gateway" | >= 13.1 < 55.34 Search vendor "NetScaler" for product "NetScaler Gateway" and version " >= 13.1 < 55.34" | en |
Affected
|