ADC

Signature update version 173

New signatures rules are generated for the vulnerabilities identified in the week 2026-05-06. You can download and configure these signature rules to protect your appliance from security vulnerable attacks.

Signature version

Signature version 173 applicable for Citrix ADC 12.1, Citrix ADC 13.0, NetScaler 13.1, NetScaler 14.1 platforms.

Note

Enabling Post body and Response body signature rules might affect NetScaler CPU.

Common Vulnerability Entry (CVE) insight

Following is a list of signature rules, CVE IDs, and its description.

Signature rule CVE ID Description
998144 CVE-2026-32201 WEB-MISC Microsoft SharePoint - Unauthenticated Spoofing Vulnerability (CVE-2026-32201)
998145 CVE-2026-23864 WEB-MISC React Server Prior to 19.0.4, 19.1.5 and 19.2.4 - Denial Of Service Vulnerability (CVE-2026-23864)
998146 CVE-2025-68645 WEB-MISC Zimbra Collaboration - Local File Inclusion Vulnerability (CVE-2025-68645)
998147 CVE-2026-20958 WEB-MISC Microsoft SharePoint - Server Side Request Forgery Vulnerability Via ExecuteRemoteLOB(CVE-2026-20958)
998148 CVE-2026-33370 WEB-MISC Zimbra Collaboration - Stored Cross-Site Scripting Vulnerability (CVE-2026-33370)
998149 CVE-2025-70951 WEB-MISC Control Web Panel Prior to 0.9.8.1223 - Unauthenticated RCE Vulnerability (CVE-2025-70951)
998150 CVE-2026-34197 WEB-MISC Apache ActiveMQ - Code Injection Vulnerability via GET (CVE-2026-34197)
998151 CVE-2026-34197 WEB-MISC Apache ActiveMQ - Code Injection Vulnerability via POST (CVE-2026-34197)
998152 CVE-2026-33368 WEB-MISC Zimbra Collaboration - Cross-Site Scripting Vulnerability (CVE-2026-33368)
998153 CVE-2026-41940 WEB-MISC cPanel and WHM - Authentication Bypass Vulnerability via cpsession (CVE-2026-41940)
998154 CVE-2026-41940 WEB-MISC cPanel and WHM - Authentication Bypass Vulnerability via whostmgrsession (CVE-2026-41940)
Signature update version 173