← Vulnerability feed

Vulnerability record · CVE-2014-7140 · published 21 October 2014

CVE-2014-7140: Citrix netscaler application delivery controller firmware vulnerability

Citrix · Netscaler Application Delivery Controller Firmware

Unspecified vulnerability in the management interface in Citrix NetScaler Application Delivery Controller (ADC) and NetScaler Gateway 10.x before 10.1-129.11 and 10.5 before 10.5-50.10 allows remote attackers to execute arbitrary code via unknown vectors.

7.5 CVSS 2.0 High EPSS 16% · top 3.2%
7.5CVSS 2.0 base score
16%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
4References
17 Jun 2026Last modified by NVD

Description

Unspecified vulnerability in the management interface in Citrix NetScaler Application Delivery Controller (ADC) and NetScaler Gateway 10.x before 10.1-129.11 and 10.5 before 10.5-50.10 allows remote attackers to execute arbitrary code via unknown vectors.

AV:N/AC:L/Au:N/C:P/I:P/A:P

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2014-7140 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

10.0CVE-2015-5538Citrix netscaler application delivery controller firmware vulnerabilityMultiple unspecified vulnerabilities in Citrix NetScaler Application Delivery Controller (ADC) and NetScaler Gateway before 10.1 Build 132.8, 10.5 be…EPSS 3.2%10.0CVE-2014-2881Citrix netscaler access gateway firmware vulnerabilityUnspecified vulnerability in the Diffie-Hellman key agreement implementation in the management GUI Java applet in Citrix NetScaler Application Delive…EPSS 1.9%10.0CVE-2014-2882Citrix netscaler access gateway firmware vulnerabilityUnspecified vulnerability in the management GUI in Citrix NetScaler Application Delivery Controller (ADC) and NetScaler Gateway before 9.3-66.5 and 1…EPSS 1.1%10.0CVE-2013-6941Citrix netscaler application delivery controller firmware vulnerabilityUnspecified vulnerability in Citrix NetScaler Application Delivery Controller (ADC) 9.3.x before 9.3-64.4, 10.0 before 10.0-77.5, and 10.1 before 10.…EPSS 1.7%9.8CVE-2018-6809Citrix netscaler application delivery controller firmware vulnerabilityNetScaler ADC 10.5, 11.0, 11.1, and 12.0, and NetScaler Gateway 10.5, 11.0, 11.1, and 12.0 allow remote attackers to gain privilege on a target syste…EPSS 4.1%9.0CVE-2015-5080Citrix netscaler application delivery controller firmware command injection vulnerabilityThe Management Interface in Citrix NetScaler Application Delivery Controller (ADC) and NetScaler Gateway 10.1 before 10.1.132.8, 10.5 before Build 56…EPSS 4.0%8.8CVE-2016-9028Citrix netscaler application delivery controller firmware vulnerabilityUnauthorized redirect vulnerability in Citrix NetScaler ADC before 10.1 135.8, 10.5 61.11, 11.0 65.31/65.35F and 11.1 47.14 allows a remote attacker …EPSS 1.8%7.8CVE-2015-2829Citrix netscaler application delivery controller firmware vulnerabilityCitrix NetScaler Application Delivery Controller (ADC) and NetScaler Gateway before 10.5 Build 53.9 through 55.8 and 10.5.e Build 53-9010.e allow rem…EPSS 2.0%

Source: NIST National Vulnerability Database (record CVE-2014-7140), CISA KEV, FIRST EPSS (scores of 2026-09-27). This page is refreshed as NVD updates the record.