References https://isecurity.huawei.com/sec/web/viewAlert.do?id=2476 https://www.netscaler.com/blog/news/cve-2023-4966-critical-security-update-now-available-for-netscaler-adc-and-netscaler-gateway/ https://support.citrix.com/external/article/CTX579459/netscaler-adc-and-netscaler-gateway-secu.html https://nvd.nist.gov/vuln/detail/cve-2023-4966 https://www.cisa.gov/guidance-addressing-citrix-netscaler-adc-and-gateway-vulnerability-cve-2023-4966-citrix-bleed https://www.assetnote.io/resources/research/citrix-bleed-leaking-session-tokens-with-cve-2023-4966/ https://www.anquanke.com/post/id/291013 https://github.com/Threekiii/Vulnerability-Wiki/blob/master/docs-base/docs/iot/Citrix-NetScaler-ADC-&-Gateway-%E4%BF%A1%E6%81%AF%E6%B3%84%E9%9C%B2%E6%BC%8F%E6%B4%9E-CVE-2023-4966.md https://www.iotsec-zone.com/article/424 https://www.ch35tnut.com/zh-cn/vulnerability/cve-2023-4966-citrix-gateway-info-disclosure/ https://blog.nsfocus.net/citrix-netscaler-adcgateway/ https://cloud.tencent.com/developer/article/2353945 https://qkl.seebug.org/vuldb/ssvid-99793 https://bestwing.me/CVE-2023-4966-Citrix-memory-leak.html https://wzt.ac.cn/2023/10/24/CVE-2023-4966/ https://avd.aliyun.com/product?prod=netscaler_application_delivery_controller https://research.splunk.com/web/b593cac5-dd20-4358-972a-d945fefdaf17/ https://github.com/Chocapikk/CVE-2023-4966 https://www.tenablecloud.cn/plugins/was/114100 https://cert.360.cn/warning/detail?id=6530dfd9ea0822e915605e16 https://www.venustech.com.cn/new_type/aqtg/20231024/26396.html
Related Vulnerabilities云连ERP管理系统 /gateway/download!download.action 代码执行漏洞Citrix-NetScaler /saml/login 信息泄露漏洞(CVE-2026-8451)PoCCVE-2023-7327: Ozeki 10 SMS Gateway 10.3.208 - Arbitrary File ReadCitrix NetScaler ADC SAML IDP /wsfed/passive 信息泄露漏洞(CVE-2026-3055)PoCapache-casbin-mcp-gateway-default-login: Apache Casbin MCP Gateway - Default LoginPoCCVE-2026-3055: Citrix NetScaler SAML IDP - Memory OverreadPoCsanhuismg-radius-rce: Synway SMG Gateway 9-2radius.php - Remote Command ExecutionCitrix NetScaler 内存越界读取漏洞PoCremote-spark-gateway-config: Remote Spark Gateway Configuration/Credentials - ExposurePoCCVE-2019-13608: Citrix StoreFront Server - XML External EntityOpenClaw Gateway 存在未授权访问漏洞Moltbot(Clawdbot)Gateways 未授权访问漏洞