vulnerability

ADM: CVE-2024-12284: Authenticated privilege escalation vulnerability in NetScaler Console

Severity
9
CVSS
(AV:N/AC:L/Au:S/C:C/I:C/A:C)
Published
Feb 18, 2025
Added
Jul 17, 2025
Modified
Oct 7, 2025

Description

A vulnerability in NetScaler Console (formerly NetScaler ADM) allows authenticated users to escalate privileges when NetScaler Console Agent is deployed. This is classified as CWE-269: Improper Privilege Management with a CVSS v4.0 Base Score of 8.8.

Solution

citrix-adm-upgrade-latest
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.