Citrix has addressed a Critical unauthenticated denial of service (DoS) vulnerability in ADC and Citrix Gateway products.
Citrix released a security update for Citrix Application Delivery Controller (ADC) and Citrix Gateway to address a Critical unauthenticated DoS vulnerability CVE-2021-22955.
The issue affects Citrix ADC and Gateway appliances configured as a VPN (Gateway) or AAA virtual server.
Moreover, Citrix also fixed a Low severity ‘temporary disruption of the Management GUI, Nitro API and RPC communication’ vulnerability (CVE-2021-22956) that affects Citrix ADC, Citrix Gateway, and Citrix SD-WAN WANOP Edition products.