CVE-2026-13474
HIGHNetScaler - Denial of Service via Malformed HTTP/2 Requests
Title source: ruleExploitation Summary
EIP tracks 1 public exploit for CVE-2026-13474. PoCs published by derekpreston81.
AI-analyzed exploit summary This repository contains a Python script that scans NetScaler configuration files for preconditions of specific CVEs, including CVE-2026-13474. It does not exploit the vulnerability but checks for configurations that may indicate vulnerability.
Description
Denial of service via malformed HTTP/2 requests in NetScaler ADC and NetScaler Gateway if HTTP/2 is enabled in HTTP Profile and associated with the virtual server (of type LB, CS, VPN) or the service configured on NetScaler
Exploits (1)
This repository contains a Python script that scans NetScaler configuration files for preconditions of specific CVEs, including CVE-2026-13474. It does not exploit the vulnerability but checks for configurations that may indicate vulnerability.
References (1)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H