¡¾·ì϶¹«¸æ¡¿Citrix NetScaler ÄÚ´æÐ¹Â©·ì϶ (CVE-2025-5777)
°ä²¼¹¦·ò 2025-07-11Ò»¡¢¡¢·ì϶¸ÅÊö
·ì϶Ãû³Æ | Citrix NetScaler ÄÚ´æÐ¹Â©·ì϶ | ||
CVE ID | CVE-2025-5777 | ||
·ì϶ÀàÐÍ | ÄÚ´æÐ¹Â© | ·¢ÏÖ¹¦·ò | 2025-07-11 |
·ì϶ÆÀ·Ö | 9.3 | ·ì϶µÈ¼¶ | ÑÏÖØ |
¹¥»÷ÏòÁ¿ | ÍøÂç | ËùÐèȨÏÞ | ÎÞ |
ÀûÓÃÄÑ¶È | µÍ | Óû§½»»¥ | ²»±ØÒª |
PoC/EXP | Òѹ«¿ª | ÔÚÒ°ÀûÓà | δ·¢ÏÖ |
NetScaler ADC£¨Ç°³ÆCitrix ADC£©ºÍNetScaler Gateway£¨Ç°³ÆCitrix Gateway£©ÊÇÓÉCitrix¹«Ë¾ÌṩµÄ¸ß»úÄÜÀûÓý»¸¶ºÍÔ¶³Ì½Ó¼û½â¾ö¹æ»®¡£¡£NetScaler ADCÖ¼ÔÚÓÅ»¯ÀûÓûúÄÜ¡¢¡¢Ìá¸ß¿ÉÓÃÐÔ²¢¼ÓÇ¿°²È«ÐÔ£¬£¬£¬¿í·ºÓÃÓÚ¸ºÔØÆ½ºâ¡¢¡¢ÄÚÈÝ»º´æºÍÀûÓüӿìµÈÁìÓò¡£¡£NetScaler GatewayÔòרһÓÚΪԶ³ÌÓû§Ìṩ°²È«µÄÐ鹹רÓÃÍøÂ磨VPN£©½Ó¼û£¬£¬£¬Ö§³Ö¶à³É·ÖÈÏÖ¤ºÍµ¥µãµÇ¼£¨SSO£©µÈÖ°ÄÜ¡£¡£Á½Õß¶¼¿ÉÄÜÔ®ÊÖÆóÒµÔÚ±£ÕÏÀûÓý»¸¶Ð§ÄܵÄͬʱ£¬£¬£¬È·±£Êý¾Ý´«ÊäºÍÓû§½Ó¼ûµÄ°²È«ÐÔ¡£¡£
2025Äê7ÔÂ11ÈÕ£¬£¬£¬OG¶«·½Ìü¼¯ÍÅVSRC¼à²âµ½Citrix NetScaler ·¢ÏÖÁËÒ»¸öÑÏÖØµÄÄÚ´æÐ¹Â©·ì϶£¬£¬£¬Ó°Ïì¶à¸ö°æ±¾µÄNetScaler ADCºÍNetScaler Gateway¡£¡£¹¥»÷ÕßÄܹ»Í¨¹ýÔ¶³Ì¡¢¡¢Î´¾Éí·ÝÑéÖ¤µÄ·½Ê½£¬£¬£¬¶ÁÈ¡É豸ÄÚ´æÖеÄÃô¸ÐÐÅÏ¢£¬£¬£¬Èç»á»°ÁîÅÆ£¬£¬£¬´Ó¶øÈƹý¶à³É·ÖÈÏÖ¤£¨MFA£©»úÖÆ²¢½Ù³ÖÓû§»á»°¡£¡£ÕâʹµÃ¹¥»÷Õß¿ÉÄÜ»ñµÃδ¾ÊÚȨµÄ½Ó¼ûȨÏÞ£¬£¬£¬½øÒ»²½Î£¼°ÆóÒµ¹Ø¼üϵͳµÄ°²È«ÐÔ¡£¡£¸Ã·ì϶²»½ö¿ÉÄܵ¼ÖÂÊý¾Ýй¶£¬£¬£¬»¹¿ÉÄÜʹ¹¥»÷Õß»ñµÃ¶ÔÊÜÓ°ÏìϵͳµÄÆëÈ«½ÚÖÆ£¬£¬£¬´Ó¶øÒý·¢¸ü¿í·ºµÄ°²È«·çÏÕ¡£¡£
¶þ¡¢¡¢Ó°ÏìÁìÓò
Èý¡¢¡¢°²È«´ëÊ©
3.1 Éý¼¶°æ±¾
´ËÍ⣬£¬£¬ÔÚËùÓÐ NetScaler É豸£¨Ô̺¬ HA ¶Ô»ò¼¯Èº£©Éý¼¶ÖÁÐÞ¸´°æ±¾ºó£¬£¬£¬½¨ÒéÔËÐÐÒÔϺÅÁîÒÔÖÕÖ¹ËùÓлµÄ ICA ºÍ PCoIP »á»°£º£º£º
ÏÂÔØÁ´½Ó£º£º£ºhttps://support.citrix.com/support-home/kbsearch/article?articleNumber=CTX693420
3.2 һʱ´ëÊ©
ÔÝÎÞ¡£¡£


¾©¹«Íø°²±¸11010802024551ºÅ