CYBERSECURITYTRACKER
TRACKING6,506 stories in this site build1,309 vulnerability news stories in this site build
Permanent story citation

CVE-2022-27518 exploited in the wild by APT5: everything you need to know

This page keeps the story as Cybersecurity Tracker first published it. If the tracker later corrects it, the correction appears below the original and never replaces it.

Back to newsStory 1766

As cited

Copy frozen at (site build).

vulnerabilities

CVE-2022-27518 exploited in the wild by APT5: everything you need to know

CVE-2022-27518 is an unauthenticated remote code execution vulnerability affecting Citrix ADC and Gateway that has been exploited in active attacks by the nation state actor APT5. Organizations running affected Citrix products face immediate risk and should prioritize patching.

Why it matters: Practitioners managing Citrix ADC or Gateway deployments must patch immediately, as this vulnerability is being actively exploited by a sophisticated adversary with capability to gain system-level access without authentication.

Source published
First seen by Cybersecurity Tracker

Source attribution

Correction

Correction recorded as of .

vulnerabilities

CVE-2022-27518 exploited in the wild by APT5: everything you need to know

CVE-2022-27518 is an unauthenticated remote code execution vulnerability affecting Citrix ADC and Gateway that has been exploited in active attacks by the nation state actor APT5. Organizations running affected Citrix products face immediate risk and should prioritize patching.

Why it matters: Practitioners managing Citrix ADC or Gateway deployments must patch immediately, as this vulnerability is being actively exploited by a sophisticated adversary with capability to gain system-level access without authentication.

VendorsCitrix
Source published
First seen by Cybersecurity Tracker

Source attribution

Glossary