¡¾Îó²îͨ¸æ¡¿Fortinet FortiWeb Fabric Connector SQL×¢ÈëÎó²î(CVE-2025-25257)
Ðû²¼Ê±¼ä 2025-07-14Ò»¡¢Îó²î¸ÅÊö
Îó²îÃû³Æ | Citrix NetScaler ADCºÍGateway¾Ü¾øÐ§ÀÍÎó²î | ||
CVE ID | CVE-2025-6543 | ||
Îó²îÀàÐÍ | ¾Ü¾øÐ§ÀÍ | ·¢Ã÷ʱ¼ä | 2025-07-01 |
Îó²îÆÀ·Ö | 9.2 | Îó²îÆ·¼¶ | ÑÏÖØ |
¹¥»÷ÏòÁ¿ | ÍøÂç | ËùÐèȨÏÞ | ÎÞ |
ʹÓÃÄÑ¶È | ¸ß | Óû§½»»¥ | ²»ÐèÒª |
PoC/EXP | ÒѹûÕæ | ÔÚҰʹÓà | δ·¢Ã÷ |
Citrix NetScaler ADC£¨Ó¦Óý»¸¶¿ØÖÆÆ÷£©ºÍNetScaler Gateway£¨VPN ½â¾ö¼Æ»®£©ÊÇCitrixÌṩµÄÍøÂçÓÅ»¯ºÍÇå¾²²úÆ·¡£¡£¡£¡£¡£NetScaler ADCͨ¹ý¸ºÔØÆ½ºâ¡¢Á÷Á¿ÖÎÀíºÍÓ¦ÓÃÓÅ»¯ÌáÉýÓ¦ÓÃÐÔÄܺͿÉÓÃÐÔ¡£¡£¡£¡£¡£NetScaler GatewayÌṩԶ³Ì»á¼ûºÍÇå¾²ÅþÁ¬£¬£¬£¬£¬£¬Ö§³ÖÐéÄâ˽ÓÐÍøÂ磨VPN£©ºÍÓ¦Óý»¸¶¡£¡£¡£¡£¡£Á½Õ߯ձéÓ¦ÓÃÓÚÆóÒµÇéÐÎÖУ¬£¬£¬£¬£¬È·±£¸ßЧ¡¢Çå¾²µØÌṩҪº¦Ó¦ÓúÍЧÀÍ¡£¡£¡£¡£¡£
2025Äê7ÔÂ1ÈÕ£¬£¬£¬£¬£¬°ÙÀÖ²©¼¯ÍÅVSRC¼à²âµ½Citrix NetScaler ADCºÍGateway±£´æ¾Ü¾øÐ§ÀÍÎó²î£¬£¬£¬£¬£¬¸ÃÎó²îÔ´ÓÚ¶ÔÊäÈëÑéÖ¤µÄȱ·¦£¬£¬£¬£¬£¬¹¥»÷Õß¿Éͨ¹ý·¢ËÍÌØÖÆÇëÇó´¥·¢¾Ü¾øÐ§ÀÍ£¨DoS£©£¬£¬£¬£¬£¬µ¼ÖÂ×°±¸½øÈëÎÞ·¨Õý³£ÌṩЧÀ͵Ä״̬£¬£¬£¬£¬£¬Îó²îÆÀ·Ö9.2·Ö£¬£¬£¬£¬£¬Îó²îÆ·¼¶ÑÏÖØ¡£¡£¡£¡£¡£ÊÜÓ°Ïì×°±¸°üÀ¨ÉèÖÃΪVPNÐéÄâЧÀÍÆ÷¡¢ICA Proxy¡¢Clientless VPN£¨CVPN£©¡¢RDP ProxyµÈµÄϵͳ¡£¡£¡£¡£¡£½¨ÒéÓû§¾¡¿ìÉý¼¶ÖÁ×îа汾ÒÔÐÞ²¹´ËÎó²î£¬£¬£¬£¬£¬×èÖ¹ÓªÒµÖÐÖ¹ºÍDZÔÚµÄÇ徲Σº¦¡£¡£¡£¡£¡£
¶þ¡¢Ó°Ïì¹æÄ£
Èý¡¢Çå¾²²½·¥
3.1 Éý¼¶°æ±¾
ÏÂÔØÁ´½Ó£ºhttps://www.citrix.com/downloads/
3.2 ÔÝʱ²½·¥
ÔÝÎÞ¡£¡£¡£¡£¡£


¾©¹«Íø°²±¸11010802024551ºÅ