Summary:
- The Dutch National Cyber Security Center (NCSC) has confirmed that there is active exploitation of a critical vulnerability in the Citrix Application Delivery Controller (ADC) and Citrix Gateway products.
- The vulnerability, known as CVE-2023-27532, allows attackers to execute arbitrary code on the affected systems, potentially leading to a complete system compromise.
- The NCSC is urging organizations using Citrix ADC and Citrix Gateway to apply the available patches or mitigations as soon as possible to protect their systems from this active threat.