Kwetsbaarheden verholpen in Citrix NetScaler ADC en NetScaler Gateway
Description
Two vulnerabilities have been addressed in Citrix NetScaler ADC and NetScaler Gateway products. The specific versions affected are not clearly identified. The vulnerabilities relate to CWE-288 (Authentication Bypass) and CWE-120 (Buffer Overflow). No CVSS score is provided, but the severity is indicated as high. There is no information about known exploits in the wild or available patches. The vendor advisory from the Nationaal Cyber Security Centrum confirms the vulnerabilities but does not provide detailed remediation status.
AI-Powered Analysis
Machine-generated threat intelligence
Technical Analysis
The Nationaal Cyber Security Centrum reported two vulnerabilities (CVE-2026-19489 and CVE-2026-19490) affecting Citrix NetScaler ADC and NetScaler Gateway. These vulnerabilities involve authentication bypass (CWE-288) and buffer overflow (CWE-120) issues. The affected versions are unspecified. No CVSS score or patch information is available from the provided data. No known exploits in the wild have been reported. The advisory ID is NCSC-2026-0318.
Potential Impact
The vulnerabilities could potentially allow unauthorized access or cause memory corruption in affected Citrix NetScaler ADC and NetScaler Gateway products. The exact impact depends on exploitation details which are not provided. The severity is assessed as high by the source, indicating significant risk if exploited.
Mitigation Recommendations
Patch status is not yet confirmed — check the vendor advisory for current remediation guidance. Since no patch links or official fix information is provided, users should monitor the Nationaal Cyber Security Centrum and Citrix advisories for updates. No specific mitigation steps are detailed in the available information.
Technical Details
- Gcve Source
- db.gcve.eu
- Csaf Category
- csaf_security_advisory
- Csaf Version
- 2.0
- Publisher
- Nationaal Cyber Security Centrum
- Advisory Id
- NCSC-2026-0318
- Cve Count
- 2
- Additional Cves
- ["CVE-2026-19490"]
- State
- PUBLISHED
Threat ID: 6a870a72acd9273b49b58a1b
Added to database: 08/20/2026, 14:08:50 UTC
Last enriched: 09/07/2026, 17:01:23 UTC
Last updated: 10/05/2026, 06:48:14 UTC
Views: 52
Community Reviews
0 reviewsCrowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.
Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.
Actions
Updates to AI analysis require Pro Console access. Upgrade inside Console → Billing.
External Links
Need more coverage?
Upgrade to Pro Console for AI refresh and higher limits.
For incident response and remediation, OffSeq services can help resolve threats faster.
Latest Threats
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.