Exploitation Summary
EIP tracks 1 public exploit for CVE-2014-7140. PoCs published by Metasploit.
AI-analyzed exploit summary This Metasploit module exploits a memory corruption vulnerability in the Citrix NetScaler SOAP handler to achieve remote code execution. It sends a malicious SOAP request to force a connection to a malicious config server, triggering a stack-based overflow to execute arbitrary code.
Description
Unspecified vulnerability in the management interface in Citrix NetScaler Application Delivery Controller (ADC) and NetScaler Gateway 10.x before 10.1-129.11 and 10.5 before 10.5-50.10 allows remote attackers to execute arbitrary code via unknown vectors.
Exploits (1)
This Metasploit module exploits a memory corruption vulnerability in the Citrix NetScaler SOAP handler to achieve remote code execution. It sends a malicious SOAP request to force a connection to a malicious config server, triggering a stack-based overflow to execute arbitrary code.