logo

CISA pushes federal agencies to patch Citrix RCE within a week

ID: ae834bd7-1ef5-528a-9ca7-ea1d6df40cbe

STIX ID: report--ae834bd7-1ef5-528a-9ca7-ea1d6df40cbe

Feed Name: DataBreaches.Net

Threat Score
85/100

Date Published: 2024-01-18

Date Updated: 2026-05-13

Author: Dissent

...
...

CISA has ordered U.S. federal agencies to urgently remediate three recently patched zero-day vulnerabilities — including Citrix NetScaler CVE-2023-6548 (code injection/RCE) and CVE-2023-6549 (buffer overflow) — that are being actively exploited; Citrix urged immediate patching of Internet-exposed ADC/Gateway appliances or blocking external access as a temporary mitigation, and the flaws were added to CISA's Known Exploited Vulnerabilities Catalog.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.