PT-2025-25743 · Citrix · Citrix Netscaler

Published

2025-06-17

·

Updated

2025-07-21

·

CVE-2025-24286

CVSS v3.1

7.2

High

VectorAV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions The product name cannot be determined.
Description A vulnerability exists that allows an authenticated user with the Backup Operator role to modify backup jobs. This modification could potentially execute arbitrary code.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

RCE

Improper Privilege Management

Weakness Enumeration

Related Identifiers

CVE-2025-24286
ZDI-25-625

Affected Products

Citrix Netscaler