CVE-2025-8424
Last modified
CVE-2025-8424 is a high-severity vulnerability rated 8.7/10 on the CVSS scale. Improper access control on the NetScaler Management Interface in NetScaler ADC and NetScaler Gateway when an attacker can get access to the appliance NSIP, Cluster Management IP or local GSLB Site IP or SNIP with Management Access. EPSS estimates a 2.72% chance of exploitation in the next 30 days.
Description
Improper access control on the NetScaler Management Interface in NetScaler ADC and NetScaler Gateway when an attacker can get access to the appliance NSIP, Cluster Management IP or local GSLB Site IP or SNIP with Management Access
Metrics
CVSS:4.0/AV:A/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:L/SI:L/SA:L/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Weakness Enumeration
References
Timeline
- Published
- Last Modified
- Status
- Deferred
Frequently Asked Questions
What is CVE-2025-8424?
How severe is CVE-2025-8424?
How do I fix CVE-2025-8424?
Are you affected by CVE-2025-8424?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
