Description
Citrix NetScaler Application Delivery Controller (ADC) and NetScaler Gateway 10.5 before build 67.13, 11.0 before build 71.22, 11.1 before build 56.19, and 12.0 before build 53.22 allow remote attackers to obtain sensitive information from the backend client TLS handshake by leveraging use of TLS with Client Certificates and a Diffie-Hellman Ephemeral (DHE) key exchange.
Published: 2017-12-13
Score: 5.9 Medium
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2017-8709 Citrix NetScaler Application Delivery Controller (ADC) and NetScaler Gateway 10.5 before build 67.13, 11.0 before build 71.22, 11.1 before build 56.19, and 12.0 before build 53.22 allow remote attackers to obtain sensitive information from the backend client TLS handshake by leveraging use of TLS with Client Certificates and a Diffie-Hellman Ephemeral (DHE) key exchange.
History

No history.

Subscriptions

Citrix Application Delivery Controller Firmware Netscaler Gateway Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-05T20:51:32.066Z

Reserved: 2017-12-11T00:00:00.000Z

Link: CVE-2017-17549

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Deferred

Published: 2017-12-13T16:29:00.393

Modified: 2025-04-20T01:37:25.860

Link: CVE-2017-17549

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses