CVE-2026-10816: Arbitrary File Read (Unauthenticated)
Arbitrary File Read (Unauthenticated) in NetScaler ADC and NetScaler Gateway if the access to NSIP, Cluster Management IP or SNIP with management access is enabled
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Compensating control
Ensure NSIP, Cluster Management IP, and SNIP do NOT have management access enabled for unauthenticated access; restrict management access to trusted sources only.
Event History
Frequently Asked Questions
What is the severity of CVE-2026-10816?
CVE-2026-10816 has a risk score of 65, indicating a medium level of severity.
What systems are affected by CVE-2026-10816?
CVE-2026-10816 affects Citrix NetScaler ADC and Citrix NetScaler Gateway.
How do I fix CVE-2026-10816?
To fix CVE-2026-10816, disable management access to the NSIP, Cluster Management IP, or SNIP.
What type of vulnerability is CVE-2026-10816?
CVE-2026-10816 is an Arbitrary File Read vulnerability that can be exploited by unauthenticated users.
What impact does CVE-2026-10816 have on security?
CVE-2026-10816 allows unauthorized access to sensitive files, potentially exposing sensitive information.