CVE-2014-2881: Citrix NetScaler Access Gateway

High severity, CVSS 10.0. EPSS: 1.9% chance of exploitation in the next 30 days.

Unspecified vulnerability in the Diffie-Hellman key agreement implementation in the management GUI Java applet in Citrix NetScaler Application Delivery Controller (ADC) and NetScaler Gateway before 9.3-66.5 and 10.x before 10.1-122.17 has unknown impact and vectors.

Affected products

  • Citrix NetScaler Access Gateway
  • Citrix NetScaler Access Gateway Firmware: version 9.3 only; up to and including 10.1.e
  • Citrix NetScaler Application Delivery Controller
  • Citrix NetScaler Application Delivery Controller Firmware: version 10.1 only; up to and including 9.3.e

Published 2014-05-01. Last modified 2026-06-17.