citrix gateway CVE-2021-22955 is a vulnerability in Citrix Gateway
Published on December 7, 2021

A unauthenticated denial of service vulnerability exists in Citrix ADC <13.0-83.27, <12.1-63.22 and 11.1-65.23 when configured as a VPN (Gateway) or AAA virtual server could allow an attacker to cause a temporary disruption of the Management GUI, Nitro API, and RPC communication.

NVD

Weakness Type

What is a Resource Exhaustion Vulnerability?

The software does not properly control the allocation and maintenance of a limited resource, thereby enabling an actor to influence the amount of resources consumed, eventually leading to the exhaustion of available resources.

CVE-2021-22955 has been classified to as a Resource Exhaustion vulnerability or weakness.


Products Associated with CVE-2021-22955

You can be notified by email with stack.watch whenever vulnerabilities like CVE-2021-22955 are published in Citrix Gateway:

 

Exploit Probability

EPSS
0.51%
Percentile
65.84%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.