CVE-2026-88776
9.8 CRITICALPublished 2026-09-27 · Updated 2026-09-28
AI risk analysis
- Summary
- The flaw is a memory overflow vulnerability in Citrix NetScaler ADC and Gateway, which can lead to Denial of Service (DoS). This issue is critical as it can be exploited to crash the affected systems, rendering them unusable.
- Exploitability
- Exploitation is relatively straightforward given the memory overflow nature, requiring the attacker to send a crafted payload to the affected NetScaler ADC or Gateway version.
- Blast radius
- If exploited, the impact is significant as it can result in a complete denial of service for the affected systems, affecting business operations and user access.
- Detection
- No reliable host or network indicator is derivable from the published description.
- Prioritized remediation
- Upgrade to Citrix NetScaler ADC version 14.1-73.37 or later, and Citrix NetScaler Gateway version 14.1-73.37 or later, as these versions address the vulnerability.
Analysis generated locally by qwen2.5:7b-instruct (no data left the box). AI-assisted — verify against primary sources before acting.
NVD description
Memory overflow vulnerability vulnerability in Citrix NetScaler ADC and Citrix NetScaler Gateway. This issue affects ADC: before 14.1-73.37, before 13.1-64.23, before 14.1-73.37 FIPS, and before 13.1.37.279 FIPS and NDcPP; Gateway: before 14.1-73.37 and before 13.1-64.23 leading to unpredictable or erroneous behavior or Denial of Service
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Weaknesses
CWE-119
Vendors
citrix
Products
netscaler application delivery controller, netscaler gateway
All references
Source data: NVD (nvd.nist.gov), public domain. Exploit-DB.ai adds local AI analysis for defensive use only.
Related CVEs
- CRITICALCVE-2026-88777
- CRITICALCVE-2026-88775
- CRITICALCVE-2026-88773
- HIGHCVE-2026-66273
- HIGHCVE-2026-67551
- HIGHCVE-2026-67589
- HIGHCVE-2026-68060
- CRITICALCVE-2026-100075
Related by shared AI tags and CWE weakness class. Browse the full archive.