CVE-2015-7996

The Nitro API in Citrix NetScaler Application Delivery Controller (ADC) and NetScaler Gateway before 10.1 Build 133.9, 10.5 before Build 58.11, and 10.5.e before Build 56.1505.e on NetScaler Service Delivery Appliance Service VM (SVM) devices allow attackers to obtain credentials via the browser cache.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
5 UNKNOWN
NETWORK
LOW
AV:N/AC:L/Au:N/C:P/I:N/A:N
mitreCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 52%
VendorProductVersion
citrixnetscaler_application_delivery_controller_firmware
10.1
citrixnetscaler_application_delivery_controller_firmware
10.5
citrixnetscaler_service_delivery_appliance_service_vm
10.5e:e
citrixnetscaler_gateway_firmware
10.1
citrixnetscaler_gateway_firmware
10.5
𝑥
= Vulnerable software versions