Dell Unity: NetScaler Unencrypted Web Management Interface plugin (User Correctable)

Zusammenfassung: NetScaler Unencrypted Web Management Interface Plugin Plugin description: "The remote Citrix NetScaler web management interface does not use TLS or SSL to encrypt connections."

Dieser Artikel gilt für Dieser Artikel gilt nicht für Dieser Artikel ist nicht an ein bestimmtes Produkt gebunden. In diesem Artikel werden nicht alle Produktversionen aufgeführt.

Symptome

The customer reported a new vulnerability with the below plugin details: 

Plugin name 

NetScaler Unencrypted Web Management Interface Plugin 

Plugin: 29224

Plugin description : "The remote Citrix NetScaler web management interface does not use TLS or SSL to encrypt connections."

 

Ursache

All webservers that redirect port 80 to 443 were reported as "NetScaler Unencrypted Web Management Interface." None of the web servers are Netscaler.

Scanners will often report about items that can improve the security and resiliency of the target machine, even though the item in question is not an actual vulnerability. 

Lösung

The vulnerability reported is a false positive. We do not have Citrix NetScaler built into Unity. 

If it does not have a CVE ID then it is not a vulnerability.

Scanners will often report about items that can improve the security and resiliency of the target machine, even though the item in question is not an actual vulnerability. For example, limiting the use of weak SSL ciphers is a common finding using these scanners, but weak SSL ciphers are not a vulnerability; it is a recommendation to harden the system.

Betroffene Produkte

Dell EMC Unity Family |Dell EMC Unity All Flash, Dell EMC Unity Family
Artikeleigenschaften
Artikelnummer: 000225081
Artikeltyp: Solution
Zuletzt geändert: 16 Okt. 2025
Version:  3
Antworten auf Ihre Fragen erhalten Sie von anderen Dell NutzerInnen
Support Services
Prüfen Sie, ob Ihr Gerät durch Support Services abgedeckt ist.