"Urgent Security Alert: Critical Zero-Day Exploits Target Atlassian, Citrix, and VMware Products"

Citrix has warned customers to immediately patch their Netscaler ADC and Gateway appliances against two actively exploited zero-day vulnerabilities, CVE-2023-6548 and CVE-2023-6549, which can lead to remote code execution and denial-of-service attacks. The vulnerabilities impact the Netscaler management interface and affect specific product versions. Citrix advises affected customers to install updated versions, separate the management interface from normal network traffic, and avoid exposing it to the internet to reduce the risk of exploitation. Additionally, a previous critical Netscaler flaw, CVE-2023-4966, was also exploited as a zero-day, prompting alerts from organizations like HHS' Health Sector Cybersecurity Coordination Center to secure their Netscaler instances against ransomware attacks.
- Citrix warns of new Netscaler zero-days exploited in attacks BleepingComputer
- Citrix, VMware, and Atlassian Hit with Critical Flaws — Patch ASAP! The Hacker News
- Atlassian Warns of Critical RCE Vulnerability in Outdated Confluence Instances SecurityWeek
- Cyber Security Today, Jan. 17, 2024 – Security updates issued for Atlassian, Citrix, VMware and Chrome products IT World Canada
- Patch now: Critical VMware, Atlassian flaws found The Register
Reading Insights
0
2
2 min
vs 3 min read
77%
451 → 105 words
Want the full story? Read the original article
Read on BleepingComputer