Back to search
CVE-2025-12101
Published: Nov 11, 2025
Modified: Nov 12, 2025
PUBLISHED
Description
Cross-Site Scripting (XSS) in NetScaler ADC and NetScaler Gateway when the appliance is configured as a Gateway (VPN virtual server, ICA Proxy, CVPN, RDP Proxy) OR AAA virtual server
| Vendor | Product | Versions |
|---|---|---|
NetScaler | ADC | affected 14.1 - < 56.73affected 13.1 - < 60.32affected 13.1-FIPS and NDcPP - < 37.250affected 12.1-FIPS and NDcPP - < 55.333 |
NetScaler | Gateway | affected 14.1 - < 56.73affected 13.1 - < 60.32affected 13.1-FIPS and NDcPP - < 37.250affected 12.1-FIPS and NDcPP - < 55.333 |
Weaknesses (CWE)
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now