Signature update version 146

New signatures rules are generated for the vulnerabilities identified in the week 2025-02-19. You can download and configure these signature rules to protect your appliance from security vulnerable attacks.

Signature version

Signature version 146 applicable for NetScaler 11.1, NetScaler 12.0, Citrix ADC 12.1, Citrix ADC 13.0, NetScaler 13.1, NetScaler 14.1 platforms.

Note

Enabling Post body and Response body signature rules might affect NetScaler CPU.

Common Vulnerability Entry (CVE) insight

Following is a list of signature rules, CVE IDs, and its description.

Signature rule CVE ID Description
998339 CVE-2025-24367 WEB-MISC Cacti Prior to 1.2.29 - Command Injection Vulnerability (CVE-2025-24367)
998340 CVE-2025-0103 WEB-MISC Palo Alto Expedition Prior to 1.2.101 - SQL Injection Vulnerability Via sendSingleAPICall (CVE-2025-0103)
998341 CVE-2025-0103 WEB-MISC Palo Alto Expedition Prior to 1.2.101 - SQL Injection Vulnerability Via checkParseStatus (CVE-2025-0103)
998342 CVE-2025-0103 WEB-MISC Palo Alto Expedition Prior to 1.2.101 - SQL Injection Vulnerability Via Monitor (CVE-2025-0103)
998343 CVE-2024-56145 WEB-MISC Craft CMS - Security Bypass Vulnerability (CVE-2024-56145)
998344 CVE-2024-57727 WEB-MISC SimpleHelp Remote Support - Unauthenticated Traversal Vulnerability via toolbox-resource (CVE-2024-57727)
998345 CVE-2024-57727 WEB-MISC SimpleHelp Remote Support - Unauthenticated Traversal Vulnerability via serverinfo (CVE-2024-57727)
998346 CVE-2024-57727 WEB-MISC SimpleHelp Remote Support - Unauthenticated Path Traversal Vulnerability via disclaimer (CVE-2024-57727)
998347 CVE-2025-0105 WEB-MISC Palo Alto Expedition Prior to 1.2.101 - Arbitrary File Deletion Vulnerability (CVE-2025-0105)
998348 CVE-2024-45440 WEB-MISC Drupal Core - Information Disclosure Vulnerability via install (CVE-2024-45440)
998349 CVE-2024-45440 WEB-MISC Drupal Core - Information Disclosure Vulnerability via authorize (CVE-2024-45440)
998350 CVE-2024-54145 WEB-MISC Cacti Prior to 1.2.29 - SQL Injection Vulnerability (CVE-2024-54145)
Signature update version 146