¡¾·ì϶¹«¸æ¡¿Citrix NetScaler ÄÚ´æÐ¹Â©·ì϶ (CVE-2025-5777)
°ä²¼¹¦·ò 2025-07-11Ò»¡¢·ì϶¸ÅÊö
·ìϼûû³Æ | Citrix NetScaler ÄÚ´æÐ¹Â©·ì϶ | ||
CVE ID | CVE-2025-5777 | ||
·ì϶ÀàÐÍ | ÄÚ´æÐ¹Â© | ·¢ÏÖ¹¦·ò | 2025-07-11 |
·ì϶ÆÀ·Ö | 9.3 | ·ì϶µÈ¼¶ | ÑϳÁ |
¹¥»÷ÏòÁ¿ | ÍøÂç | ËùÐèȨÏÞ | ÎÞ |
ÀûÓÃÄÑ¶È | µÍ | Óû§½»»¥ | ²»±ØÒª |
PoC/EXP | Òѹ«¿ª | ÔÚÒ°ÀûÓà | δ·¢ÏÖ |
NetScaler ADC£¨Ç°³ÆCitrix ADC£©ºÍNetScaler Gateway£¨Ç°³ÆCitrix Gateway£©ÊÇÓÉCitrix¹«Ë¾ÌṩµÄ¸ß»úÄÜÀûÓý»¸¶ºÍÔ¶³Ì½Ó¼û½â¾ö¹æ»®¡£¡£¡£¡£¡£¡£NetScaler ADCÖ¼ÔÚÓÅ»¯ÀûÓûúÄÜ¡¢Ìá¸ß¿ÉÓÃÐÔ²¢¼ÓÇ¿°²È«ÐÔ£¬£¬£¬£¬£¬¿í·ºÓÃÓÚ¸ºÔØÆ½ºâ¡¢ÄÚÈÝ»º´æºÍÀûÓüӿìµÈÁìÓò¡£¡£¡£¡£¡£¡£NetScaler GatewayÔòרһÓÚΪԶ³ÌÓû§Ìṩ°²È«µÄÐ鹹רÓÃÍøÂ磨VPN£©½Ó¼û£¬£¬£¬£¬£¬Ö§³Ö¶à³É·ÖÈÏÖ¤ºÍµ¥µãµÇ¼£¨SSO£©µÈÖ°ÄÜ¡£¡£¡£¡£¡£¡£Á½Õß¶¼¿ÉÄÜÔ®ÊÔìóÒµÔÚ±£ÕÏÀûÓý»¸¶Ð§ÄܵÄͬʱ£¬£¬£¬£¬£¬È·±£Êý¾Ý´«ÊäºÍÓû§½Ó¼ûµÄ°²È«ÐÔ¡£¡£¡£¡£¡£¡£
2025Äê7ÔÂ11ÈÕ£¬£¬£¬£¬£¬8827Ì«Ñô¼¯Íż¯ÍÅVSRC¼à²âµ½Citrix NetScaler ·¢ÏÖÁËÒ»¸öÑϳÁµÄÄÚ´æÐ¹Â©·ì϶£¬£¬£¬£¬£¬Ó°Ïì¶à¸ö°æ±¾µÄNetScaler ADCºÍNetScaler Gateway¡£¡£¡£¡£¡£¡£¹¥»÷ÕßÄܹ»Í¨¹ýÔ¶³Ì¡¢Î´¾Éí·ÝÑéÖ¤µÄ·½Ê½£¬£¬£¬£¬£¬¶ÁÈ¡É豸ÄÚ´æÖеÄÃô¸ÐÐÅÏ¢£¬£¬£¬£¬£¬Èç»á»°ÁîÅÆ£¬£¬£¬£¬£¬´Ó¶øÈƹý¶à³É·ÖÈÏÖ¤£¨MFA£©»úÔì²¢½Ù³ÖÓû§»á»°¡£¡£¡£¡£¡£¡£ÕâʹµÃ¹¥»÷Õß¿ÉÄÜ»ñµÃδ¾ÊÚȨµÄ½Ó¼ûȨÏÞ£¬£¬£¬£¬£¬½øÒ»²½Î£¼°ÆóÒµ¹Ø¼üϵͳµÄ°²È«ÐÔ¡£¡£¡£¡£¡£¡£¸Ã·ì϶²»½ö¿ÉÄܵ¼ÖÂÊý¾Ýй¶£¬£¬£¬£¬£¬»¹¿ÉÄÜʹ¹¥»÷Õß»ñµÃ¶ÔÊÜÓ°ÏìϵͳµÄÆëÈ«½ÚÔ죬£¬£¬£¬£¬´Ó¶øÒý·¢¸ü¿í·ºµÄ°²È«·çÏÕ¡£¡£¡£¡£¡£¡£
¶þ¡¢Ó°ÏìÁìÓò
Èý¡¢°²È«´ëÊ©
3.1 Éý¼¶°æ±¾
´Ë±í£¬£¬£¬£¬£¬ÔÚËùÓÐ NetScaler É豸£¨Ô̺¬ HA ¶Ô»ò¼¯Èº£©Éý¼¶ÖÁ½¨¸´°æ±¾ºó£¬£¬£¬£¬£¬½¨ÒéÔËÐÐÒÔϺÅÁîÒÔÖÕÖ¹ËùÓлµÄ ICA ºÍ PCoIP »á»°£º
ÏÂÔØÁ´½Ó£ºhttps://support.citrix.com/support-home/kbsearch/article?articleNumber=CTX693420
3.2 һʱ´ëÊ©
ÔÝÎÞ¡£¡£¡£¡£¡£¡£


¾©¹«Íø°²±¸11010802024551ºÅ