Vulnerabilities
40 CVEs · NVD, GitHub Advisories, CISA KEV, FIRST EPSS, GitHub PoC repos
| CVE | Vulnerability | CVSS | EPSS | Flags | Affected | Exposure | Published |
|---|---|---|---|---|---|---|---|
| CVE-2025-32985 | NETSCOUT nGeniusONE before 6.4.0 b2350 has Hardcoded Credentials that can be obtained from JAR files. NETSCOUT nGeniusONE before 6.4.0 b2350 has Hardcoded Credentials that can be obtained from JAR files. NVD description · AI analysis pending | 9.8 group max | <1% |
| — | ||
| CVE-2023-26999 | An issue found in NetScout nGeniusOne v.6.3.4 allows a remote attacker to execute arbitrary code and cause a denial of service via a crafted file. An issue found in NetScout nGeniusOne v.6.3.4 allows a remote attacker to execute arbitrary code and cause a denial of service via a crafted file. NVD description · AI analysis pending | 9.8 group max | 1% | PoC |
| — | |
| CVE-2023-41170 | NetScout nGeniusONE 6.3.4 build 2298 allows a Reflected Cross-Site scripting vulnerability. NetScout nGeniusONE 6.3.4 build 2298 allows a Reflected Cross-Site scripting vulnerability. NVD description · AI analysis pending | 6.1 group max | <1% |
| — | ||
| CVE-2023-40301 | NETSCOUT nGeniusPULSE 3.8 has a Command Injection Vulnerability. NETSCOUT nGeniusPULSE 3.8 has a Command Injection Vulnerability. NVD description · AI analysis pending | 9.8 group max | 1% |
| — | ||
| CVE-2022-44715 | Improper File Permissions in NetScout nGeniusONE 6.3.2 build 904 allows authenticated remote users to gain permissions via a crafted payload. Improper File Permissions in NetScout nGeniusONE 6.3.2 build 904 allows authenticated remote users to gain permissions via a crafted payload. NVD description · AI analysis pending | 8.8 group max | <1% |
| — | ||
| CVE-2021-45983 | NetScout nGeniusONE 6.3.2 allows Java RMI Code Execution. NetScout nGeniusONE 6.3.2 allows Java RMI Code Execution. NVD description · AI analysis pending | 9.8 group max | 1% |
| — | ||
| CVE-2021-35201 | NEI in NETSCOUT nGeniusONE 6.3.0 build 1196 allows XML External Entity (XXE) attacks. NEI in NETSCOUT nGeniusONE 6.3.0 build 1196 allows XML External Entity (XXE) attacks. NVD description · AI analysis pending | 6.5 group max | <1% |
| — | ||
| CVE-2020-28251 | NETSCOUT AirMagnet Enterprise 11.1.4 build 37257 and earlier has a sensor escalated privileges vulnerability that can be exploited to provide someone with admin NETSCOUT AirMagnet Enterprise 11.1.4 build 37257 and earlier has a sensor escalated privileges vulnerability that can be exploited to provide someone with administrative access to a sensor, with credentials to invoke a command to provide root access to the operating system. The attacker must complete a straightforward password-cracking exercise. NVD description · AI analysis pending | 8.1 | 1% |
| — |