Description
Arbitrary File Read (Unauthenticated) in NetScaler ADC and NetScaler Gateway if the access to NSIP, Cluster Management IP or SNIP with management access is enabled
Published: 2026-06-30
Score: 7.1 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

The vulnerability permits an attacker who can send requests to a NetScaler ADC or Gateway device to read any file on the system when management access to the NSIP, Cluster Management IP, or SNIP is enabled. This allows exposure of sensitive configuration files, credentials, or other confidential data. The weakness is a path traversal type flaw that permits disallowed path access (CWE‑73).

Affected Systems

All NetScaler ADC and NetScaler Gateway devices that enable management access to the NSIP, Cluster Management IP, or SNIP are potentially affected. No specific version numbers are provided in the CVE data, so any revision allowing such access should be considered vulnerable.

Risk and Exploitability

The CVSS score of 7.1 indicates high severity. The EPSS score is not available, so the exploitation likelihood remains uncertain. The CVE is not listed in the CISA KEV catalog, indicating no confirmed widespread exploitation to date. The likely attack vector is an external network connection to the device’s management interfaces; no user credentials are required.

Generated by OpenCVE AI on June 30, 2026 at 16:37 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Apply the latest vendor‑supplied firmware or software update for NetScaler ADC and Gateway.
  • If a patch is not yet available, disable or restrict management access to the NSIP, Cluster Management IP, or SNIP from external hosts.
  • Configure network segmentation or firewall rules to block external traffic to the NetScaler device’s management IP addresses.

Generated by OpenCVE AI on June 30, 2026 at 16:37 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Tue, 30 Jun 2026 20:30:00 +0000

Type Values Removed Values Added
First Time appeared Netscaler
Netscaler adc
Netscaler gateway
Vendors & Products Netscaler
Netscaler adc
Netscaler gateway

Tue, 30 Jun 2026 14:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 30 Jun 2026 13:15:00 +0000

Type Values Removed Values Added
Description Arbitrary File Read (Unauthenticated) in NetScaler ADC and NetScaler Gateway if the access to NSIP, Cluster Management IP or SNIP with management access is enabled
Title Arbitrary File Read (Unauthenticated)
Weaknesses CWE-73
References
Metrics cvssV4_0

{'score': 7.1, 'vector': 'CVSS:4.0/AV:A/AC:L/AT:N/PR:N/UI:N/VC:H/VI:L/VA:N/SC:N/SI:N/SA:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: NetScaler

Published:

Updated: 2026-06-30T13:28:45.455Z

Reserved: 2026-06-04T05:48:47.634Z

Link: CVE-2026-10816

cve-icon Vulnrichment

Updated: 2026-06-30T13:28:40.636Z

cve-icon NVD

No data.

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-06-30T20:15:16Z

Weaknesses
  • CWE-73

    External Control of File Name or Path