Site icon TheCyberThrone

CISA Adds Critical Citrix NetScaler Vulnerability to KEV Catalog

Advertisements

On June 30, 2025, the Cybersecurity and Infrastructure Security Agency (CISA) added CVE-2025-6543, a critical buffer overflow vulnerability in Citrix NetScaler ADC and Gateway, to its Known Exploited Vulnerabilities (KEV) Catalog, citing evidence of active exploitation in the wild.

🔍 Vulnerability Overview

🛡️ Official CISA Action

⚠️ Affected Versions (per Citrix Advisory)

Note: CVE-2025-6543 was disclosed alongside CVE-2025-5777, another critical issue. Both require immediate attention.

🧩 Technical Context

📌 Remediation Steps

  1. Inventory all NetScaler ADC and Gateway deployments.
  2. Check configuration: Identify whether they are acting as VPN/ICA Proxy/AAA/etc.
  3. Review version numbers and immediately upgrade to the latest secure builds:
  4. Inspect logs for unusual activity or exploit attempts.
  5. Apply network segmentation to isolate exposed services, if patching is delayed.
  6. Continue monitoring CISA’s KEV Catalog for future updates.

🧠 Analyst Notes

📅 Important Dates

Event Date KEV Entry June 30, 2025 Federal Deadline July 21, 2025

Exit mobile version