Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2733▼ 589 respecto a la semana anterior
Críticas / altas1313▼ 190 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)294▼ 216 respecto a la semana anterior
–

133 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
AnalizadaMedia (4.3)26%⚠ Explotación activaCitrix Application Delivery Controller FirmwareCitrix Netscaler Gateway FirmwareCitrix Gateway FirmwareCitrix Sd-wan Wanop10/7/202017/6/2026
Improper access control in Citrix ADC and Citrix Gateway versions before 13.0-58.30, 12.1-57.18, 12.0-63.21, 11.1-64.14 and 10.5-70.18 and Citrix SDWAN WAN-OP versions before 11.1.1a, 11.0.3d and 10.2.7 resulting in limited information disclosure to low privileged users.
AnalizadaMedia (6.5)33%⚠ Explotación activaCitrix Application Delivery Controller FirmwareCitrix Netscaler Gateway FirmwareCitrix Gateway FirmwareCitrix Sd-wan Wanop+110/7/202017/6/2026
Improper input validation in Citrix ADC and Citrix Gateway versions before 13.0-58.30, 12.1-57.18, 12.0-63.21, 11.1-64.14 and 10.5-70.18 and Citrix SDWAN WAN-OP versions before 11.1.1a, 11.0.3d and 10.2.7 resulting in limited information disclosure to low privileged users.
ModificadaMedia (6.5)11%💥 ExploitCitrix Application Delivery Controller FirmwareCitrix Netscaler Gateway FirmwareCitrix Gateway FirmwareCitrix Sd-wan Wanop10/7/202017/6/2026
Reflected code injection in Citrix ADC and Citrix Gateway versions before 13.0-58.30, 12.1-57.18, 12.0-63.21, 11.1-64.14 and 10.5-70.18 and Citrix SDWAN WAN-OP versions before 11.1.1a, 11.0.3d and 10.2.7 allows the modification of a file download.
AnalizadaMedia (6.5)88%⚠ Explotación activa💥 ExploitCitrix Application Delivery Controller FirmwareCitrix Netscaler Gateway FirmwareCitrix Gateway FirmwareCitrix Sd-wan Wanop10/7/202017/6/2026
Improper access control in Citrix ADC and Citrix Gateway versions before 13.0-58.30, 12.1-57.18, 12.0-63.21, 11.1-64.14 and 10.5-70.18 and Citrix SDWAN WAN-OP versions before 11.1.1a, 11.0.3d and 10.2.7 allows unauthenticated access to certain URL endpoints.
ModificadaMedia (6.1)26%💥 ExploitCitrix Application Delivery Controller FirmwareCitrix Netscaler Gateway FirmwareCitrix Gateway FirmwareCitrix Sd-wan Wanop10/7/202017/6/2026
Improper input validation in Citrix ADC and Citrix Gateway versions before 13.0-58.30, 12.1-57.18, 12.0-63.21, 11.1-64.14 and 10.5-70.18 and Citrix SDWAN WAN-OP versions before 11.1.1a, 11.0.3d and 10.2.7 allows reflected Cross Site Scripting (XSS).
ModificadaAlta (7.5)1.2%—Citrix Application Delivery Controller FirmwareCitrix Netscaler Gateway FirmwareCitrix Gateway Firmware10/7/202017/6/2026
Incorrect file permissions in Citrix ADC and Citrix Gateway before versions 13.0-58.30, 12.1-57.18, 12.0-63.21, 11.1-64.14 and 10.5-70.18 allows privilege escalation.
ModificadaAlta (7.5)1.9%—Citrix Application Delivery Controller FirmwareCitrix Netscaler Gateway Firmware10/7/202017/6/2026
Improper input validation in Citrix ADC and Citrix Gateway versions before 11.1-63.9 and 12.0-62.10 allows unauthenticated users to perform a denial of service attack.
ModificadaMedia (5.9)0.59%—Citrix Sd-wan CenterCitrix Netscaler Sd-wan Center16/3/202017/6/2026
Citrix SD-WAN 10.2.x before 10.2.6 and 11.0.x before 11.0.3 has Missing SSL Certificate Validation.
ModificadaMedia (6.1)0.78%—Citrix Sd-wan CenterCitrix Netscaler Sd-wan Center10/3/202017/6/2026
Citrix SD-WAN Center 10.2.x before 10.2.1 and NetScaler SD-WAN Center 10.0.x before 10.0.7 allow XSS.
ModificadaAlta (7.5)3.6%—Supermicro SMT X9 FirmwareSupermicro SMT X8 FirmwareCitrix Netscaler SDX FirmwareCitrix Netscaler Firmware+12/1/202016/6/2026
Hardcoded WSMan credentials in Intelligent Platform Management Interface (IPMI) with firmware for Supermicro X9 generation motherboards before 3.15 (SMT_X9_315) and firmware for Supermicro X8 generation motherboards before SMT X8 312.
ModificadaAlta (8.1)9.7%—Supermicro SMT X9 FirmwareSupermicro SMT X8 FirmwareCitrix Netscaler SDX FirmwareCitrix Netscaler Firmware+12/1/202016/6/2026
Intelligent Platform Management Interface (IPMI) with firmware for Supermicro X9 generation motherboards before SMT_X9_317 and firmware for Supermicro X8 generation motherboards before SMT X8 312 contain harcoded private encryption keys for the (1) Lighttpd web server SSL interface and the (2) Dropbear SSH daemon.
AnalizadaCrítica (9.8)100%⚠ Explotación activa💥 ExploitCitrix Application Delivery Controller FirmwareCitrix Netscaler Gateway FirmwareCitrix Gateway Firmware27/12/201912/8/2026
An issue was discovered in Citrix Application Delivery Controller (ADC) and Gateway 10.5, 11.1, 12.0, 12.1, and 13.0. They allow Directory Traversal.
ModificadaCrítica (9.8)1.5%—Citrix Application Delivery Controller FirmwareCitrix Netscaler Gateway FirmwareCitrix Gateway Firmware21/10/201917/6/2026
An issue was discovered in Citrix Application Delivery Controller (ADC) and Gateway before 10.5 build 70.8, 11.x before 11.1 build 63.9, 12.0 before build 62.10, 12.1 before build 54.16, and 13.0 before build 41.28. An attacker with management-interface access can bypass authentication to obtain appliance…
ModificadaAlta (8.8)49%—Citrix Netscaler Sd-wanCitrix Sd-wan16/7/201917/6/2026
Citrix SD-WAN 10.2.x before 10.2.3 and NetScaler SD-WAN 10.0.x before 10.0.8 have Improper Input Validation (issue 6 of 6).
AnalizadaAlta (8.8)74%⚠ Explotación activa💥 ExploitCitrix Netscaler Sd-wanCitrix Sd-wan16/7/201917/6/2026
Citrix SD-WAN 10.2.x before 10.2.3 and NetScaler SD-WAN 10.0.x before 10.0.8 have Improper Input Validation (issue 5 of 6).
ModificadaCrítica (9.8)39%💥 ExploitCitrix Netscaler Sd-wanCitrix Sd-wan16/7/201917/6/2026
Citrix SD-WAN 10.2.x before 10.2.3 and NetScaler SD-WAN 10.0.x before 10.0.8 allow Directory Traversal.
AnalizadaCrítica (9.8)95%⚠ Explotación activa💥 ExploitCitrix Netscaler Sd-wanCitrix Sd-wan16/7/201917/6/2026
Citrix SD-WAN 10.2.x before 10.2.3 and NetScaler SD-WAN 10.0.x before 10.0.8 allow SQL Injection.
ModificadaCrítica (9.8)43%💥 ExploitCitrix Netscaler Sd-wanCitrix Sd-wan16/7/201917/6/2026
Citrix SD-WAN 10.2.x before 10.2.3 and NetScaler SD-WAN 10.0.x before 10.0.8 have Improper Input Validation (issue 4 of 6).
ModificadaCrítica (9.8)43%💥 ExploitCitrix Netscaler Sd-wanCitrix Sd-wan16/7/201917/6/2026
Citrix SD-WAN 10.2.x before 10.2.3 and NetScaler SD-WAN 10.0.x before 10.0.8 have Improper Input Validation (issue 3 of 6).
ModificadaCrítica (9.8)40%💥 ExploitCitrix Netscaler Sd-wanCitrix Sd-wan16/7/201917/6/2026
Citrix SD-WAN 10.2.x before 10.2.3 and NetScaler SD-WAN 10.0.x before 10.0.8 have Improper Input Validation (issue 2 of 6).
ModificadaCrítica (9.8)40%💥 ExploitCitrix Netscaler Sd-wanCitrix Sd-wan16/7/201917/6/2026
Citrix SD-WAN 10.2.x before 10.2.3 and NetScaler SD-WAN 10.0.x before 10.0.8 have Improper Input Validation (issue 1 of 6).
ModificadaCrítica (9.8)65%—Citrix Sd-wan CenterCitrix Netscaler Sd-wan Center3/6/201917/6/2026
Citrix SD-WAN Center 10.2.x before 10.2.1 and NetScaler SD-WAN Center 10.0.x before 10.0.7 allow Command Injection.
ModificadaAlta (7.5)1.5%—Citrix Netscaler Gateway FirmwareCitrix Netscaler Application Delivery Controller Firmware22/5/201917/6/2026
A Buffer Overflow exists in Citrix NetScaler Gateway 10.5.x before 10.5.70.x, 11.1.x before 11.1.59.10, 12.0.x before 12.0.59.8, and 12.1.x before 12.1.49.23 and Citrix Application Delivery Controller 10.5.x before 10.5.70.x, 11.1.x before 11.1.59.10, 12.0.x before 12.0.59.8, and 12.1.x before 12.1.49.23.
ModificadaMedia (5.9)0.58%—Citrix Netscaler Sd-wanCitrix Sd-wan8/5/201917/6/2026
Citrix SD-WAN 10.2.x before 10.2.1 and NetScaler SD-WAN 10.0.x before 10.0.7 have Improper Certificate Validation.
ModificadaMedia (5.9)2.3%—Citrix Netscaler Gateway FirmwareCitrix Netscaler Application Delivery Controller Firmware22/2/201917/6/2026
Citrix NetScaler Gateway 12.1 before build 50.31, 12.0 before build 60.9, 11.1 before build 60.14, 11.0 before build 72.17, and 10.5 before build 69.5 and Application Delivery Controller (ADC) 12.1 before build 50.31, 12.0 before build 60.9, 11.1 before build 60.14, 11.0 before build 72.17, and 10.5 before build 69.5…
Orbitaley — Vulnerabilidades