<?xml version="1.0" encoding="UTF-8"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>WildforTech Security Advisories — Citrix</title><description>Actively exploited vulnerabilities affecting Citrix products.</description><link>https://wildfortech.com</link><atom:link href="https://wildfortech.com/security/vendor/citrix.xml" rel="self" type="application/rss+xml"/><item><title>CVE-2026-3055 — Citrix NetScaler Out-of-Bounds Read Vulnerability</title><link>https://wildfortech.com/security#CVE-2026-3055</link><guid isPermaLink="true">https://wildfortech.com/security#CVE-2026-3055</guid><description>This vulnerability affects Citrix NetScaler ADC, NetScaler Gateway, and their FIPS/NDcPP variants when configured as a SAML Identity Provider. An out-of-bounds read flaw allows an attacker to force the device to read beyond intended memory boundaries, potentially exposing sensitive data from memory. Because NetScaler devices typically sit at network edges handling authentication traffic, exploitation could compromise credentials or session data for a broad user population.</description><pubDate>Mon, 30 Mar 2026 00:00:00 GMT</pubDate><category>Citrix</category><category>NetScaler</category></item><item><title>CVE-2025-7775 — Citrix NetScaler Memory Overflow Vulnerability</title><link>https://wildfortech.com/security#CVE-2025-7775</link><guid isPermaLink="true">https://wildfortech.com/security#CVE-2025-7775</guid><description>Citrix NetScaler ADC and NetScaler Gateway contain a memory overflow vulnerability that remote attackers could exploit to execute arbitrary code or crash affected systems. These are widely deployed network appliances controlling application delivery and VPN access, meaning a successful attack could give adversaries deep access to internal networks or knock out critical connectivity. CISA has added this to the Known Exploited Vulnerabilities catalog, signaling confirmed real-world exploitation.</description><pubDate>Tue, 26 Aug 2025 00:00:00 GMT</pubDate><category>Citrix</category><category>NetScaler</category></item><item><title>CVE-2024-8068 — Citrix Session Recording Improper Privilege Management Vulnerability</title><link>https://wildfortech.com/security#CVE-2024-8068</link><guid isPermaLink="true">https://wildfortech.com/security#CVE-2024-8068</guid><description>This vulnerability in Citrix Session Recording allows an authenticated attacker — already a member of the same Active Directory domain as the session recording server — to escalate their privileges to the NetworkService Account level. While the attacker must already have domain credentials, gaining NetworkService access can open pathways to broader system compromise, making this a meaningful risk in enterprise environments where Citrix Session Recording is deployed.</description><pubDate>Mon, 25 Aug 2025 00:00:00 GMT</pubDate><category>Citrix</category><category>Session Recording</category></item><item><title>CVE-2024-8069 — Citrix Session Recording Deserialization of Untrusted Data Vulnerability</title><link>https://wildfortech.com/security#CVE-2024-8069</link><guid isPermaLink="true">https://wildfortech.com/security#CVE-2024-8069</guid><description>Citrix Session Recording is vulnerable to deserialization of untrusted data, allowing an authenticated attacker on the same internal network to execute remote code with NetworkService Account privileges. While the attacker must already have internal network access and valid credentials — limiting the attack surface — successful exploitation could give an adversary a persistent foothold with system-level service privileges, enabling lateral movement or further compromise of recorded session data.</description><pubDate>Mon, 25 Aug 2025 00:00:00 GMT</pubDate><category>Citrix</category><category>Session Recording</category></item><item><title>CVE-2025-5777 — Citrix NetScaler ADC and Gateway Out-of-Bounds Read Vulnerability</title><link>https://wildfortech.com/security#CVE-2025-5777</link><guid isPermaLink="true">https://wildfortech.com/security#CVE-2025-5777</guid><description>Citrix NetScaler ADC and Gateway contain a flaw where insufficient input validation allows an attacker to read memory beyond intended boundaries. This affects appliances configured as VPN virtual servers, ICA Proxy, CVPN, RDP Proxy, or AAA virtual servers — common enterprise remote-access configurations. The vulnerability is actively being exploited by ransomware operators, meaning real-world attacks are already underway against organizations using these widely deployed network gateway products.</description><pubDate>Thu, 10 Jul 2025 00:00:00 GMT</pubDate><category>Citrix</category><category>NetScaler ADC and Gateway</category></item><item><title>CVE-2025-6543 — Citrix NetScaler ADC and Gateway Buffer Overflow Vulnerability</title><link>https://wildfortech.com/security#CVE-2025-6543</link><guid isPermaLink="true">https://wildfortech.com/security#CVE-2025-6543</guid><description>This buffer overflow flaw in Citrix NetScaler ADC and Gateway allows attackers to disrupt control flow and cause a Denial of Service, effectively taking the affected device offline. It only applies when NetScaler is configured in specific roles — as a VPN virtual server, ICA Proxy, CVPN, RDP Proxy, or AAA virtual server. For organizations relying on these devices for remote access or authentication, an outage could cut off employees or customers from critical resources.</description><pubDate>Mon, 30 Jun 2025 00:00:00 GMT</pubDate><category>Citrix</category><category>NetScaler ADC and Gateway</category></item></channel></rss>