CVE-2023-3519

Published Jul 19, 2023

Last updated 4 months ago

Overview

Description
Unauthenticated remote code execution
Source
secure@citrix.com
NVD status
Analyzed
Products
netscaler_application_delivery_controller, netscaler_gateway

Risk scores

CVSS 3.1

Type
Primary
Base score
9.8
Impact score
5.9
Exploitability score
3.9
Vector string
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Severity
CRITICAL

Known exploits

Data from CISA

Vulnerability name
Citrix NetScaler ADC and NetScaler Gateway Code Injection Vulnerability
Exploit added on
Jul 19, 2023
Exploit action due
Aug 9, 2023
Required action
Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

Weaknesses

secure@citrix.com
CWE-94
nvd@nist.gov
CWE-94

Social media

Hype score
Not currently trending
  1. Early 2026 reports show rising cloud compromises via misconfigured services and CVE-2023-3519, CVE-2023-2868, CVE-2021-43798 exploitation, expanding victim impact across sectors. #CloudSecurity https://t.co/JtGxVn3keB

    @threatcluster

    19 Feb 2026

    52 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  2. [MàJ] Vulnérabilité dans Citrix NetScaler ADC et NetScaler Gateway (19 juillet 2023) — Le 18 juillet 2023, Citrix a publié un avis de sécurité concernant plusieurs vulnérabilités. La plus critique, dont l'identifiant CVE est CVE-2023-3519, permet à un attaquant non aut

    @RotateKeys

    6 Nov 2025

    3 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  3. 🚨 CVE-2023-3519 - critical 🚨 Citrix NetScaler ADC and NetScaler Gateway - Remote Code Execution > critical unauthenticated remote code execution (RCE) vulnerability affecting Citrix A... 👾 https://t.co/xLEWOcVCCD @pdnuclei #NucleiTemplates #cve

    @pdnuclei_bot

    19 Oct 2025

    323 Impressions

    2 Retweets

    1 Like

    6 Bookmarks

    0 Replies

    0 Quotes

  4. Actively exploited CVE : CVE-2023-3519

    @transilienceai

    25 Aug 2025

    82 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    1 Reply

    0 Quotes

  5. Actively exploited CVE : CVE-2023-3519

    @transilienceai

    24 Aug 2025

    104 Impressions

    0 Retweets

    1 Like

    0 Bookmarks

    1 Reply

    0 Quotes

  6. Actively exploited CVE : CVE-2023-3519

    @transilienceai

    23 Aug 2025

    60 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    1 Reply

    0 Quotes

  7. Murky Panda, a Chinese hacking group, targets North America’s government and tech by exploiting cloud services and vulnerabilities like CVE-2023-3519. They utilize advanced tools for persistence, posing significant security risks. #Security https://t.co/32QZO1YYgp

    @Strivehawk

    22 Aug 2025

    34 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  8. Actively exploited CVE : CVE-2023-3519

    @transilienceai

    5 Aug 2025

    37 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    1 Reply

    0 Quotes

  9. Actively exploited CVE : CVE-2023-3519

    @transilienceai

    4 Aug 2025

    38 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    1 Reply

    0 Quotes

  10. Actively exploited CVE : CVE-2023-3519

    @transilienceai

    3 Aug 2025

    29 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    1 Reply

    0 Quotes

  11. Actively exploited CVE : CVE-2023-3519

    @transilienceai

    1 Aug 2025

    30 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    1 Reply

    0 Quotes

  12. 🚨 RansomHub: A top ransomware threat of 2024. ⚠️ Exploiting Citrix ADC (CVE-2023-3519), Zerologon (CVE-2020-1472) ⚠️ Mimikatz + PsExec + AnyDesk = Stealthy lateral movement ⚠️ Curve 25519 encryption + cloud exfiltration = No easy recovery Red Report 2025 highlights why this… h

    @PicusSecurity

    12 Mar 2025

    164 Impressions

    0 Retweets

    1 Like

    0 Bookmarks

    0 Replies

    0 Quotes

  13. 🚨 Rising Threat: INC Ransomware 🚨 This group exploits CVE-2023-3519 & spear-phishing to infiltrate networks. Their double-extortion tactics are expanding. Expect more high-impact breaches. Stay ahead: https://t.co/lXbEoxPphL #CyberSecurity #ThreatHunting #InfoSec

    @TWX_Assassins

    11 Mar 2025

    52 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  14. 🚨 China-backed Silk Typhoon is shifting tactics! Now targeting IT supply chains via stolen API keys & cloud app credentials. They hit MSPs, healthcare, govt & more. Key exploits: Ivanti VPN (CVE-2025-0282), Palo Alto firewalls (CVE-2024-3400), Citrix (CVE-2023-3519).

    @hacktoria

    7 Mar 2025

    376 Impressions

    2 Retweets

    1 Like

    0 Bookmarks

    0 Replies

    1 Quote

  15. Hive ransomware targets healthcare and financial sectors with a Ransomware-as-a-Service (RaaS) model, exploiting vulnerabilities like CVE-2023-3519 and using double extortion tactics. #CyberSecurity #HiveRansomware #DataProtection https://t.co/TFvwvQcX93

    @ThreatCure_25

    6 Dec 2024

    4 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  16. Don’t let Citrix risks derail your operations—fix them before they turn into disasters. 🚀 🛡️ Patch CVEs like CVE-2023-3519 📈 Streamline resource allocation 🛠️ Strengthen security protocols Discover how to secure your #Citrix environment in our blog: https://t.co/gzPp1jIr9

    @Insentra

    5 Dec 2024

    46 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    1 Reply

    0 Quotes

  17. Actively exploited CVE : CVE-2023-3519

    @transilienceai

    21 Nov 2024

    12 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    1 Reply

    0 Quotes

  18. 🚨🔍 Top 5 most exploited CVEs of 2023: 1️⃣ CVE-2023-3519 (Citrix NetScaler): Buffer overflow for remote code execution. 2️⃣ CVE-2023-4966 (Citrix NetScaler): Token leakage risk. 3️⃣ CVE-2023-20198 (Cisco IOS XE): Unauthorized admin access.

    @AugustineCyber

    17 Nov 2024

    12 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    1 Reply

    0 Quotes

  19. INC Ransomware Alert: Exploiting CVE-2023-3519, leveraging HackTool.ProcTerminator for evasion, & HackTool.PS1.VeeamCreds for credential theft. Get the latest insights on this evolving threat! https://t.co/PwuhfX1cy2 #CyberSecurity #Ransomware #ThreatIntelligence

    @TrendMicroAMEA

    15 Nov 2024

    16 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  20. CISAから2023年に良く悪用された脆弱性のまとめが公開されていましたね。 2023 Top Routinely Exploited Vulnerabilities https://t.co/ulfm6a7TUz ◆CVE-2023-3519:Citrix ◆CVE-2023-4966:Citrix ◆CVE-2023-20198:Cisco ◆CVE-2023-20273:Cisco ◆CVE-2023-27997:Fortinet… https://t.co/5hY9DKZUl3 https://t.co/G9ylY3EdvP

    @taku888infinity

    13 Nov 2024

    1354 Impressions

    1 Retweet

    8 Likes

    0 Bookmarks

    1 Reply

    0 Quotes

  21. When I'm bored I look for this kind of #Opendir. Same TA behind? 🤔 #Citrix CVE-2023-3519 exploit and #shellcode hxxp://155.248.183.38:8000/README.md hxxp://155.248.183.38:8000/📷 hxxp://128.199.145.171:88/📷 https://t.co/WhEs4soOz3

    @ShanHolo

    3 Nov 2024

    319 Impressions

    0 Retweets

    2 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

Configurations