We are conducting supplier outreach about the recent Citrix Bleed vulnerability.
CISA Releases Guidance for Addressing Citrix NetScaler ADC and Gateway Vulnerability CVE-2023-4966, Citrix Bleed | CISA
1. Does your company use software or services provided by Citrix NetScaler ADC or Gateway? (Yes/No. If No, the remaining questions are N/A).
2. Based on your evaluation of the above vulnerability as it pertains to your company, do you have any reasonable suspicion that FastTrack’s data, systems, or business processes may be at risk?
3. If so, what are your company’s plans to mitigate the risk as it relates to FastTrack, and when do you anticipate this will be completed? (Free response).
4. If you use Citrix NetScaler ADC or Gateway, has your company completed the necessary remediation activities to address this vulnerability? (MORE DETAIL OR LINK TO REMEDIATION ACTIVITIES)