TTPwire Vol. 1 · MITRE ATT&CK·Tagged

← All stories

CIS Advisories

Multiple Vulnerabilities in NetScaler ADC and NetScaler Gateway Could Allow for Memory Overread

2026-03-30 · Read original ↗

ATT&CK techniques detected

4 predictions
T1190Exploit Public-Facing Application
98%
"exploited. systems affected : - netscaler adc and netscaler gateway versions 14. 1 before 14. 1 - 66. 59 and 13. 1 before 13. 1 - 62. 23 - netscaler adc 13. 1 - fips and 13. 1 - ndcpp before 13. 1 - 37. 262. risk : government : businesses : home users : technical summary : multip…"
T1190Exploit Public-Facing Application
97%
"##p ). - a race condition affects appliances configured as a gateway ( ssl vpn, ica proxy, cvpn, or rdp proxy ) or as an aaa virtual server. ( cve - 2026 - 4368 ) successful exploitation of cve - 2026 - 3055 could lead to memory overread on the netscaler appliance. this would pot…"
T1078.001Default Accounts
74%
"##sh the effects of a successful attack. ( m1026 : privileged account management ) - safeguard 4. 7 : manage default accounts on enterprise assets and software : manage default accounts on enterprise assets and software, such as root, administrator, and other pre - configured ven…"
T1190Exploit Public-Facing Application
39%
"multiple vulnerabilities in netscaler adc and netscaler gateway could allow for memory overread multiple vulnerabilities in netscaler adc and netscaler gateway could allow for memory overread ms - isac advisory number : 2026 - 025date ( s ) issued : 03 / 30 / 2026overview : multi…"

Summary

Multiple Vulnerabilities have been discovered in NetScaler ADC and NetScaler Gateway, the most severe of which could allow for memory overread.


  • NetScaler ADC is a networking product that functions as an Application Delivery Controller (ADC), a tool that optimizes, secures, and ensures the reliable availability of applications for businesses.
  • NetScaler Gateway is a secure remote access solution that provides users with single sign-on (SSO) to applications and resources from any device, anywhere.


Successful exploitation of these vulnerabilities could lead to memory overread of potentially sensitive data from the appliance memory.