importantSYS.SOURCE: The Hacker News• 2026-09-30T11:00:30+05:30
Citrix NetScaler CVE-2026-88772: Pre-Authentication Shellcode Execution Vulnerability Exploited
A critical buffer overflow vulnerability (CVE-2026-88772) in Citrix NetScaler ADC and Gateway enables pre-authentication remote code execution through DTLS protocol exploitation. The flaw, actively exploited in the wild, allows attackers to execute arbitrary shellcode with root privileges via memory overflow techniques.
Cybersecurity researchers have disclosed technical details of a recently patched critical security flaw in Citrix NetScaler ADC and Gateway that has come under active exploitation in the wild.
The vulnerability, tracked as CVE-2026-88772 (CVSS score: 9.5), has been described as a memory overflow bug in the Datagram Transport Layer Security (DTLS) protocol handling that's rooted in the NetScaler
*** END OF TRANSMISSION ***