¡¾·ì϶¹«¸æ¡¿Citrix NetScaler ÄÚ´æÐ¹Â©·ì϶ (CVE-2025-5777)
°ä²¼¹¦·ò 2025-07-11Ò»¡¢·ì϶¸ÅÊö
·ìϼûû³Æ | Citrix NetScaler ÄÚ´æÐ¹Â©·ì϶ | ||
CVE ID | CVE-2025-5777 | ||
·ì϶ÀàÐÍ | ÄÚ´æÐ¹Â© | ·¢ÏÖ¹¦·ò | 2025-07-11 |
·ì϶ÆÀ·Ö | 9.3 | ·ì϶µÈ¼¶ | ÑϳÁ |
¹¥»÷ÏòÁ¿ | ÍøÂç | ËùÐèȨÏÞ | ÎÞ |
ÀûÓÃÄÑ¶È | µÍ | Óû§½»»¥ | ²»±ØÒª |
PoC/EXP | Òѹ«¿ª | ÔÚÒ°ÀûÓà | δ·¢ÏÖ |
NetScaler ADC£¨Ç°³ÆCitrix ADC£©ºÍNetScaler Gateway£¨Ç°³ÆCitrix Gateway£©ÊÇÓÉCitrix¹«Ë¾ÌṩµÄ¸ß»úÄÜÀûÓý»¸¶ºÍÔ¶³Ì½Ó¼û½â¾ö¹æ»®¡£NetScaler ADCÖ¼ÔÚÓÅ»¯ÀûÓûúÄÜ¡¢Ìá¸ß¿ÉÓÃÐÔ²¢¼ÓÇ¿°²È«ÐÔ£¬¿í·ºÓÃÓÚ¸ºÔØÆ½ºâ¡¢ÄÚÈÝ»º´æºÍÀûÓüӿìµÈÁìÓò¡£NetScaler GatewayÔòרһÓÚΪԶ³ÌÓû§Ìṩ°²È«µÄÐ鹹רÓÃÍøÂ磨VPN£©½Ó¼û£¬Ö§³Ö¶à³É·ÖÈÏÖ¤ºÍµ¥µãµÇ¼£¨SSO£©µÈÖ°ÄÜ¡£Á½Õß¶¼¿ÉÄÜÔ®ÊÔìóÒµÔÚ±£ÕÏÀûÓý»¸¶Ð§ÄܵÄͬʱ£¬È·±£Êý¾Ý´«ÊäºÍÓû§½Ó¼ûµÄ°²È«ÐÔ¡£
2025Äê7ÔÂ11ÈÕ£¬GA»Æ½ð¼×¼¯ÍÅVSRC¼à²âµ½Citrix NetScaler ·¢ÏÖÁËÒ»¸öÑϳÁµÄÄÚ´æÐ¹Â©·ì϶£¬Ó°Ïì¶à¸ö°æ±¾µÄNetScaler ADCºÍNetScaler Gateway¡£¹¥»÷ÕßÄܹ»Í¨¹ýÔ¶³Ì¡¢Î´¾Éí·ÝÑéÖ¤µÄ·½Ê½£¬¶ÁÈ¡É豸ÄÚ´æÖеÄÃô¸ÐÐÅÏ¢£¬Èç»á»°ÁîÅÆ£¬´Ó¶øÈƹý¶à³É·ÖÈÏÖ¤£¨MFA£©»úÔì²¢½Ù³ÖÓû§»á»°¡£ÕâʹµÃ¹¥»÷Õß¿ÉÄÜ»ñµÃδ¾ÊÚȨµÄ½Ó¼ûȨÏÞ£¬½øÒ»²½Î£¼°ÆóÒµ¹Ø¼üϵͳµÄ°²È«ÐÔ¡£¸Ã·ì϶²»½ö¿ÉÄܵ¼ÖÂÊý¾Ýй¶£¬»¹¿ÉÄÜʹ¹¥»÷Õß»ñµÃ¶ÔÊÜÓ°ÏìϵͳµÄÆëÈ«½ÚÔ죬´Ó¶øÒý·¢¸ü¿í·ºµÄ°²È«·çÏÕ¡£
¶þ¡¢Ó°ÏìÁìÓò
Èý¡¢°²È«´ëÊ©
3.1 Éý¼¶°æ±¾
´Ë±í£¬ÔÚËùÓÐ NetScaler É豸£¨Ô̺¬ HA ¶Ô»ò¼¯Èº£©Éý¼¶ÖÁ½¨¸´°æ±¾ºó£¬½¨ÒéÔËÐÐÒÔϺÅÁîÒÔÖÕÖ¹ËùÓлµÄ ICA ºÍ PCoIP »á»°£º
ÏÂÔØÁ´½Ó£ºhttps://support.citrix.com/support-home/kbsearch/article?articleNumber=CTX693420
3.2 һʱ´ëÊ©
ÔÝÎÞ¡£


¾©¹«Íø°²±¸11010802024551ºÅ