Signature update version 149

New signatures rules are generated for the vulnerabilities identified in the week 2025-03-25. You can download and configure these signature rules to protect your appliance from security vulnerable attacks.

Signature version

Signature version 149 applicable for Citrix ADC 12.1, Citrix ADC 13.0, NetScaler 13.1, NetScaler 14.1 platforms.

Note

Enabling Post body and Response body signature rules might affect NetScaler CPU.

Common Vulnerability Entry (CVE) insight

Following is a list of signature rules, CVE IDs, and its description.

Signature rule CVE ID Description
998320 CVE-2025-27636 WEB-MISC Apache Camel - Bypass/Injection Vulnerability (CVE-2025-27636)
998321 CVE-2025-25064 WEB-MISC Zimbra Collaboration - SQL Injection Vulnerability via JSON (CVE-2025-25064)
998322 CVE-2025-25064 WEB-MISC Zimbra Collaboration - SQL Injection Vulnerability via XML (CVE-2025-25064)
998323 CVE-2024-48248 WEB-MISC NAKIVO Backup and Replication- Unauthenticated File Read Vulnerability (CVE-2024-48248)
998324 CVE-2025-29891 WEB-MISC Apache Camel - Bypass/Injection Vulnerability (CVE-2025-29891)
998325 CVE-2025-24813 WEB-MISC Apache Tomcat Multiple Versions - Remote Code Execution Vulnerability (CVE-2025-24813)
998326 CVE-2025-1661 WEB-WORDPRESS HUSKY (WOOF) Products Filter for WooCommerce Up to 1.3.6.6 - Unauthenticated LFI Vulnerability (CVE-2025-1661)
Signature update version 149