CVE-2026-8452 is a memory overflow (CWE-119) vulnerability in Citrix NetScaler ADC and NetScaler Gateway appliances configured as Gateway (SSL VPN, ICA Proxy, CVPN, RDP Proxy) or AAA virtual servers. It is unauthenticated, network-reachable, and has demonstrated pre-authentication remote code execution as root, with active in-the-wild exploitation and CISA KEV listing. This represents a critical, direct T1190 perimeter compromise risk.
Data Source: CIRCL
Confidence: HIGH
Exploitation Method: DIRECT_NETWORK
CVE Published: 2026-06-30
Added to CISA KEV: 2026-08-26 57 DAYS BETWEEN CVE AND KEV
CVE-2026-8452 is a memory overflow vulnerability affecting Citrix NetScaler ADC and NetScaler Gateway appliances that can lead to system instability, denial of service (DoS), or, more critically, unauthenticated remote code execution (RCE). Initially identified as a DoS risk, research demonstrated that the flaw allows attackers to achieve root-level code execution when the appliance is configured as a Gateway (SSL VPN, ICA Proxy, CVPN, RDP Proxy) or AAA virtual server, particularly when using SAML as a Service Provider or Identity Provider. It is a high-severity issue that poses a significant threat to organizational infrastructure due to its potential for total system compromise.
CVE-2026-8452 is a memory overflow in Citrix NetScaler ADC and Gateway, originally rated a denial-of-service risk when it shipped in June 2026. Security firm watchTowr published a proof-of-concept in August showing the flaw allows unauthenticated remote code execution as root. CISA added it to its K…
Citrix NetScaler PreAuth Heap overflow to RCE Detection Artifact Generator -. Sina Kheirkhah (@SinSinology) of watchTowr (@watchTowrcyber). CVEs: [CVE-2026-8452] [*].Affected Versions. Tthe vulnerability is reachable when the Netscaler appliance is configured to use SAML as either a Service Provider…
Description. Memory overflow vulnerability NetScaler ADC and NetScaler Gateway leading to unpredictable or erroneous behavior and Denial of ... CVE-2026-8452 Detail Description Memory overflow vulnerability NetScaler ADC and NetScaler Gateway leading to unpredictable or erroneous behavior and Denial…
CVE-2026-8452 is a memory overflow denial of service vulnerability in Citrix NetScaler ADC and Gateway that causes system instability when ... CVE-2026-8452: Citrix NetScaler ADC DoS Vulnerability CVE-2026-8452 is a memory overflow denial of service vulnerability in Citrix NetScaler ADC and Gateway…