CVE-2025-8424: NetScaler ADC

High severity, CVSS 8.7. EPSS: 3.3% chance of exploitation in the next 30 days.

Improper access control on the NetScaler Management Interface in NetScaler ADC and NetScaler Gateway when an attacker can get access to the appliance NSIP, Cluster Management IP or local GSLB Site IP or SNIP with Management Access

Affected products

  • NetScaler ADC: from 14.1, before 47.48 (fixed in 47.48); from 13.1, before 59.22 (fixed in 59.22)
  • NetScaler Gateway: from 14.1, before 47.48 (fixed in 47.48); from 13.1, before 59.22 (fixed in 59.22)

Published 2025-08-26. Last modified 2026-06-17.