¡¾Îó²îͨ¸æ¡¿Citrix NetScaler ÄÚ´æ×ß©Îó²î (CVE-2025-5777)
Ðû²¼Ê±¼ä 2025-07-11Ò»¡¢Îó²î¸ÅÊö
Îó²îÃû³Æ | Citrix NetScaler ÄÚ´æ×ß©Îó²î | ||
CVE ID | CVE-2025-5777 | ||
Îó²îÀàÐÍ | ÄÚ´æ×ß© | ·¢Ã÷ʱ¼ä | 2025-07-11 |
Îó²îÆÀ·Ö | 9.3 | Îó²îÆ·¼¶ | ÑÏÖØ |
¹¥»÷ÏòÁ¿ | ÍøÂç | ËùÐèȨÏÞ | ÎÞ |
ʹÓÃÄÑ¶È | µÍ | Óû§½»»¥ | ²»ÐèÒª |
PoC/EXP | ÒѹûÕæ | ÔÚҰʹÓà | δ·¢Ã÷ |
NetScaler ADC£¨Ç°³ÆCitrix ADC£©ºÍNetScaler Gateway£¨Ç°³ÆCitrix Gateway£©ÊÇÓÉCitrix¹«Ë¾ÌṩµÄ¸ßÐÔÄÜÓ¦Óý»¸¶ºÍÔ¶³Ì»á¿´·¨¾ö¼Æ»®¡£¡£¡£¡£¡£¡£¡£NetScaler ADCÖ¼ÔÚÓÅ»¯Ó¦ÓÃÐÔÄÜ¡¢Ìá¸ß¿ÉÓÃÐÔ²¢ÔöÇ¿Çå¾²ÐÔ£¬£¬£¬£¬£¬£¬ÆÕ±éÓÃÓÚ¸ºÔØÆ½ºâ¡¢ÄÚÈÝ»º´æºÍÓ¦ÓüÓËÙµÈÁìÓò¡£¡£¡£¡£¡£¡£¡£NetScaler GatewayÔòרעÓÚΪԶ³ÌÓû§ÌṩÇå¾²µÄÐéÄâרÓÃÍøÂ磨VPN£©»á¼û£¬£¬£¬£¬£¬£¬Ö§³Ö¶àÒòËØÈÏÖ¤ºÍµ¥µãµÇ¼£¨SSO£©µÈ¹¦Ð§¡£¡£¡£¡£¡£¡£¡£Á½Õß¶¼Äܹ»×ÊÖúÆóÒµÔÚ°ü¹ÜÓ¦Óý»¸¶Ð§ÂʵÄͬʱ£¬£¬£¬£¬£¬£¬È·±£Êý¾Ý´«ÊäºÍÓû§»á¼ûµÄÇå¾²ÐÔ¡£¡£¡£¡£¡£¡£¡£
2025Äê7ÔÂ11ÈÕ£¬£¬£¬£¬£¬£¬¼øºÚµ£±£Íø¼¯ÍÅVSRC¼à²âµ½Citrix NetScaler ·¢Ã÷ÁËÒ»¸öÑÏÖØµÄÄÚ´æ×ß©Îó²î£¬£¬£¬£¬£¬£¬Ó°Ïì¶à¸ö°æ±¾µÄNetScaler ADCºÍNetScaler Gateway¡£¡£¡£¡£¡£¡£¡£¹¥»÷Õß¿ÉÒÔͨ¹ýÔ¶³Ì¡¢Î´¾Éí·ÝÑéÖ¤µÄ·½·¨£¬£¬£¬£¬£¬£¬¶Áȡװ±¸ÄÚ´æÖеÄÃô¸ÐÐÅÏ¢£¬£¬£¬£¬£¬£¬Èç»á»°ÁîÅÆ£¬£¬£¬£¬£¬£¬´Ó¶øÈƹý¶àÒòËØÈÏÖ¤£¨MFA£©»úÖÆ²¢Ð®ÖÆÓû§»á»°¡£¡£¡£¡£¡£¡£¡£ÕâʹµÃ¹¥»÷ÕßÄܹ»»ñµÃδ¾ÊÚȨµÄ»á¼ûȨÏÞ£¬£¬£¬£¬£¬£¬½øÒ»²½Î£¼°ÆóÒµÒªº¦ÏµÍ³µÄÇå¾²ÐÔ¡£¡£¡£¡£¡£¡£¡£¸ÃÎó²î²»µ«¿ÉÄܵ¼ÖÂÊý¾Ýй¶£¬£¬£¬£¬£¬£¬»¹¿ÉÄÜʹ¹¥»÷Õß»ñµÃ¶ÔÊÜÓ°ÏìϵͳµÄÍêÈ«¿ØÖÆ£¬£¬£¬£¬£¬£¬´Ó¶øÒý·¢¸üÆÕ±éµÄÇ徲Σº¦¡£¡£¡£¡£¡£¡£¡£
¶þ¡¢Ó°Ïì¹æÄ£
Èý¡¢Çå¾²²½·¥
3.1 Éý¼¶°æ±¾
±ðµÄ£¬£¬£¬£¬£¬£¬ÔÚËùÓÐ NetScaler ×°±¸£¨°üÀ¨ HA ¶Ô»ò¼¯Èº£©Éý¼¶ÖÁÐÞ¸´°æ±¾ºó£¬£¬£¬£¬£¬£¬½¨ÒéÔËÐÐÒÔÏÂÏÂÁîÒÔÖÕÖ¹ËùÓлµÄ ICA ºÍ PCoIP »á»°£º
ÏÂÔØÁ´½Ó£ºhttps://support.citrix.com/support-home/kbsearch/article?articleNumber=CTX693420
3.2 ÔÝʱ²½·¥
ÔÝÎÞ¡£¡£¡£¡£¡£¡£¡£


¾©¹«Íø°²±¸11010802024551ºÅ