ADC

Signature update version 151

New signatures rules are generated for the vulnerabilities identified in the week 2025-04-23. You can download and configure these signature rules to protect your appliance from security vulnerable attacks.

Signature version

Signature version 151 applicable for Citrix ADC 12.1, Citrix ADC 13.0, NetScaler 13.1, NetScaler 14.1 platforms.

Note

Enabling Post body and Response body signature rules might affect NetScaler CPU.

Common Vulnerability Entry (CVE) insight

Following is a list of signature rules, CVE IDs, and its description.

Signature rule CVE ID Description
998307 CVE-2024-36410 WEB-MISC SuiteCRM Prior To 7.14.4 and 8.6.1 - SQLi Vulnerability Via EmailUIAjax getMessageCount controller (CVE-2024-36410)
998308 CVE-2025-31161 WEB-MISC CrushFTP Prior to 10.8.4 and 11.3.1 - Authentication Bypass Vulnerability (CVE-2025-31161)
998309 CVE-2024-48590 WEB-MISC Inflectra SpiraTeam Up To 7.2.00 - SSRF Vulnerability (CVE-2024-48590)
998310 CVE-2025-2746 WEB-MISC Kentico CMS Up to 13.0.172 - Authentication Bypass Vulnerability (CVE-2025-2746)
998311 CVE-2025-2748 WEB-MISC Kentico CMS Up to 13.0.178 - Stored XSS Vulnerability (CVE-2025-2748)
998312 CVE-2025-1098 WEB-MISC Kubernetes Ingress-Nginx Multiple Versions - RCE Vulnerability Via mirror-target or mirror-host (CVE-2025-1098)
998313 CVE-2024-36411 WEB-MISC SuiteCRM Prior To 7.14.4 and 8.6.1 - SQLi Vulnerability Via EmailUIAjax displayView controller (CVE-2024-36411)
998314 CVE-2025-2294 WEB-WORDPRESS Kubio AI Page Builder Plugin Prior to 2.5.1 - Unauthenticated LFI Vulnerability (CVE-2025-2294)
998315 CVE-2025-1097 WEB-MISC Kubernetes Ingress-Nginx Multiple Versions - Unauthenticated RCE Vulnerability Via auth-tls-match-cn (CVE-2025-1097)
998316 CVE-2024-36412 WEB-MISC Prior SuiteCRM To 7.14.4 and 8.6.1 - SQLi Vulnerability Via responseEntryPoint (CVE-2024-36412)
998317 CVE-2025-2747 WEB-MISC Kentico CMS Up to 13.0.178 - Authentication Bypass Vulnerability (CVE-2025-2747)
Signature update version 151