CVE-2024-12284

Severity CVSS v4.0:
HIGH
Type:
CWE-269 Improper Privilege Management
Publication date:
20/02/2025
Last modified:
25/07/2025

Description

Authenticated privilege escalation in NetScaler Console and NetScaler Agent allows.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:citrix:netscaler_agent:*:*:*:*:-:*:*:* 13.1-4.43 (including) 13.1-56.18 (excluding)
cpe:2.3:a:citrix:netscaler_agent:*:*:*:*:-:*:*:* 14.1-4.42 (including) 14.1-38.53 (excluding)
cpe:2.3:a:citrix:netscaler_agent:13.0-58.30:*:*:*:-:*:*:*
cpe:2.3:a:citrix:netscaler_console:13.1:build12.50:*:*:*:*:*:*
cpe:2.3:a:citrix:netscaler_console:13.1:build17.42:*:*:*:*:*:*
cpe:2.3:a:citrix:netscaler_console:13.1:build21.53:*:*:*:*:*:*
cpe:2.3:a:citrix:netscaler_console:13.1:build24.38:*:*:*:*:*:*
cpe:2.3:a:citrix:netscaler_console:13.1:build27.62:*:*:*:*:*:*
cpe:2.3:a:citrix:netscaler_console:13.1:build30.52:*:*:*:*:*:*
cpe:2.3:a:citrix:netscaler_console:13.1:build33.50:*:*:*:*:*:*
cpe:2.3:a:citrix:netscaler_console:13.1:build37.38:*:*:*:*:*:*
cpe:2.3:a:citrix:netscaler_console:13.1:build4.43:*:*:*:*:*:*
cpe:2.3:a:citrix:netscaler_console:13.1:build42.47:*:*:*:*:*:*
cpe:2.3:a:citrix:netscaler_console:13.1:build45.61:*:*:*:*:*:*
cpe:2.3:a:citrix:netscaler_console:13.1:build48.47:*:*:*:*:*:*