netscout records
41 published records for vendor netscout.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 3
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')19
- CWE-601 URL Redirection to Untrusted Site ('Open Redirect')3
- CWE-732 Incorrect Permission Assignment for Critical Resource3
- CWE-611 Improper Restriction of XML External Entity Reference3
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor2
- CWE-798 Use of Hard-coded Credentials2
The weakness classes this vendor ships most often: where to look.
CWEAll records
41 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
39Monitor | CVE-2023-40301No exploit | NETSCOUT nGeniusPULSE 3.8 has a Command Injection Vulnerability.netscout · ngeniuspulse · CWE-77 | Critical9.8 | — | 1.5% | Dec 7, 2023 |
39Monitor | CVE-2021-45983No exploit | NetScout nGeniusONE 6.3.2 allows Java RMI Code Execution.netscout · ngeniusone | Critical9.8 | — | 1.4% | Jun 2, 2022 |
39Monitor | CVE-2021-45981No exploit | NetScout nGeniusONE 6.3.2 allows an XML External Entity (XXE) attack.netscout · ngeniusone · CWE-611 | Critical9.8 | — | 1.1% | Jun 2, 2022 |
39Monitor | CVE-2023-26999No exploit | An issue found in NetScout nGeniusOne v.6.3.4 allows a remote attacker to execute arbitrary code and cause a denial of service via a craftednetscout · ngeniusone · CWE-611 | Critical9.8 | — | 1.1% | Jan 8, 2024 |
39Monitor | CVE-2023-40300No exploit | NETSCOUT nGeniusPULSE 3.8 has a Hardcoded Cryptographic Key.netscout · ngeniuspulse · CWE-798 | Critical9.8 | — | 0.7% | Dec 7, 2023 |
39Monitor | CVE-2025-32985No exploit | NETSCOUT nGeniusONE before 6.4.0 b2350 has Hardcoded Credentials that can be obtained from JAR files.netscout · ngeniusone · CWE-798 | Critical9.8 | — | 0.4% | Apr 25, 2025 |
36Monitor | CVE-2023-40302No exploit | NETSCOUT nGeniusPULSE 3.8 has Weak File Permissions Vulnerabilitynetscout · ngeniuspulse · CWE-732 | Critical9.1 | — | 0.8% | Dec 7, 2023 |
35Monitor | CVE-2021-45982No exploit | NetScout nGeniusONE 6.3.2 allows Arbitrary File Upload by a privileged user.netscout · ngeniusone · CWE-434 | High8.8 | — | 1.0% | Jun 2, 2022 |
35Monitor | CVE-2022-44715No exploit | Improper File Permissions in NetScout nGeniusONE 6.3.2 build 904 allows authenticated remote users to gain permissions via a crafted payloadnetscout · ngeniusone · CWE-732 | High8.8 | — | 0.7% | Jan 27, 2023 |
32Monitor | CVE-2020-28251No exploit | NETSCOUT AirMagnet Enterprise 11.1.4 build 37257 and earlier has a sensor escalated privileges vulnerability that can be exploited to providnetscout · airmagnet enterprise | High8.1 | — | 1.2% | Dec 3, 2020 |
30Monitor | CVE-2008-6701No exploit | NetScout (formerly Network General) Visualizer V2100 and InfiniStream i1730 do not restrict access to ResourceManager/en_US/domains/add_domanetscout · ngenius infinistream · CWE-264 | High7.5 | — | 1.4% | Apr 10, 2009 |
30Monitor | CVE-2025-32986No exploit | NETSCOUT nGeniusONE before 6.4.0 b2350 has a Sensitive File Accessible Without Proper Authentication to an endpoint.netscout · ngeniusone · CWE-200 | High7.5 | — | 0.4% | Apr 25, 2025 |
30Monitor | CVE-2025-32983No exploit | NETSCOUT nGeniusONE before 6.4.0 b2350 allows Technical Information Disclosure via a Stack Trace.netscout · ngeniusone · CWE-200 | High7.5 | — | 0.4% | Apr 25, 2025 |
30Monitor | CVE-2025-32982No exploit | NETSCOUT nGeniusONE before 6.4.0 b2350 has a Broken Authorization Schema for the report module.netscout · ngeniusone · CWE-285 | High7.5 | — | 0.4% | Apr 25, 2025 |
28Monitor | CVE-2025-32981No exploit | NETSCOUT nGeniusONE before 6.4.0 b2350 allows local users to leverage Insecure Permissions for the nGeniusCLI File.netscout · ngeniusone · CWE-276 | High7.1 | — | 0.2% | Apr 25, 2025 |
26Monitor | CVE-2021-35201No exploit | NEI in NETSCOUT nGeniusONE 6.3.0 build 1196 allows XML External Entity (XXE) attacks.netscout · ngeniusone · CWE-611 | Medium6.5 | — | 1.0% | Sep 30, 2021 |
26Monitor | CVE-2025-32979No exploit | NETSCOUT nGeniusONE before 6.4.0 b2350 allows Arbitrary File Creation by authenticated users.netscout · ngeniusone · CWE-378 | Medium6.5 | — | 0.3% | Apr 25, 2025 |
24Monitor | CVE-2023-27000No exploit | Cross Site Scripting vulnerability found in NetScoutnGeniusOne v.6.3.4 allows a remote attacker to execute arbitrary code via the name paramnetscout · ngeniusone · CWE-79 | Medium6.1 | — | 0.5% | Jan 8, 2024 |
24Monitor | CVE-2023-41170No exploit | NetScout nGeniusONE 6.3.4 build 2298 allows a Reflected Cross-Site scripting vulnerability.netscout · ngeniusone · CWE-79 | Medium6.1 | — | 0.4% | Dec 7, 2023 |
24Monitor | CVE-2022-44025No exploit | An issue was discovered in NetScout nGeniusONE 6.3.2 before P10.netscout · ngeniusone · CWE-79 | Medium6.1 | — | 0.4% | Jan 27, 2023 |
24Monitor | CVE-2022-44026No exploit | An issue was discovered in NetScout nGeniusONE 6.3.2 before P10.netscout · ngeniusone · CWE-79 | Medium6.1 | — | 0.4% | Jan 27, 2023 |
24Monitor | CVE-2022-44029No exploit | An issue was discovered in NetScout nGeniusONE 6.3.2 before P10.netscout · ngeniusone · CWE-79 | Medium6.1 | — | 0.4% | Jan 27, 2023 |
24Monitor | CVE-2022-44027No exploit | An issue was discovered in NetScout nGeniusONE 6.3.2 before P10.netscout · ngeniusone · CWE-79 | Medium6.1 | — | 0.4% | Jan 27, 2023 |
24Monitor | CVE-2022-44024No exploit | An issue was discovered in NetScout nGeniusONE 6.3.2 before P10.netscout · ngeniusone · CWE-79 | Medium6.1 | — | 0.4% | Jan 27, 2023 |
24Monitor | CVE-2022-44028No exploit | An issue was discovered in NetScout nGeniusONE 6.3.2 before P10.netscout · ngeniusone · CWE-79 | Medium6.1 | — | 0.4% | Jan 27, 2023 |
- CVE-2023-4030139Monitor
NETSCOUT nGeniusPULSE 3.8 has a Command Injection Vulnerability.
CriticalCVSS 9.8No exploitEPSS 1%netscout · ngeniuspulseDec 7, 2023
- CVE-2021-4598339Monitor
NetScout nGeniusONE 6.3.2 allows Java RMI Code Execution.
CriticalCVSS 9.8No exploitEPSS 1%netscout · ngeniusoneJun 2, 2022
- CVE-2021-4598139Monitor
NetScout nGeniusONE 6.3.2 allows an XML External Entity (XXE) attack.
CriticalCVSS 9.8No exploitEPSS 1%netscout · ngeniusoneJun 2, 2022
- CVE-2023-2699939Monitor
An issue found in NetScout nGeniusOne v.6.3.4 allows a remote attacker to execute arbitrary code and cause a denial of service via a crafted
CriticalCVSS 9.8No exploitEPSS 1%netscout · ngeniusoneJan 8, 2024
- CVE-2023-4030039Monitor
NETSCOUT nGeniusPULSE 3.8 has a Hardcoded Cryptographic Key.
CriticalCVSS 9.8No exploitEPSS 1%netscout · ngeniuspulseDec 7, 2023
- CVE-2025-3298539Monitor
NETSCOUT nGeniusONE before 6.4.0 b2350 has Hardcoded Credentials that can be obtained from JAR files.
CriticalCVSS 9.8No exploitEPSS 0%netscout · ngeniusoneApr 25, 2025
- CVE-2023-4030236Monitor
NETSCOUT nGeniusPULSE 3.8 has Weak File Permissions Vulnerability
CriticalCVSS 9.1No exploitEPSS 1%netscout · ngeniuspulseDec 7, 2023
- CVE-2021-4598235Monitor
NetScout nGeniusONE 6.3.2 allows Arbitrary File Upload by a privileged user.
HighCVSS 8.8No exploitEPSS 1%netscout · ngeniusoneJun 2, 2022
- CVE-2022-4471535Monitor
Improper File Permissions in NetScout nGeniusONE 6.3.2 build 904 allows authenticated remote users to gain permissions via a crafted payload
HighCVSS 8.8No exploitEPSS 1%netscout · ngeniusoneJan 27, 2023
- CVE-2020-2825132Monitor
NETSCOUT AirMagnet Enterprise 11.1.4 build 37257 and earlier has a sensor escalated privileges vulnerability that can be exploited to provid
HighCVSS 8.1No exploitEPSS 1%netscout · airmagnet enterpriseDec 3, 2020
- CVE-2008-670130Monitor
NetScout (formerly Network General) Visualizer V2100 and InfiniStream i1730 do not restrict access to ResourceManager/en_US/domains/add_doma
HighCVSS 7.5No exploitEPSS 1%netscout · ngenius infinistreamApr 10, 2009
- CVE-2025-3298630Monitor
NETSCOUT nGeniusONE before 6.4.0 b2350 has a Sensitive File Accessible Without Proper Authentication to an endpoint.
HighCVSS 7.5No exploitEPSS 0%netscout · ngeniusoneApr 25, 2025
- CVE-2025-3298330Monitor
NETSCOUT nGeniusONE before 6.4.0 b2350 allows Technical Information Disclosure via a Stack Trace.
HighCVSS 7.5No exploitEPSS 0%netscout · ngeniusoneApr 25, 2025
- CVE-2025-3298230Monitor
NETSCOUT nGeniusONE before 6.4.0 b2350 has a Broken Authorization Schema for the report module.
HighCVSS 7.5No exploitEPSS 0%netscout · ngeniusoneApr 25, 2025
- CVE-2025-3298128Monitor
NETSCOUT nGeniusONE before 6.4.0 b2350 allows local users to leverage Insecure Permissions for the nGeniusCLI File.
HighCVSS 7.1No exploitEPSS 0%netscout · ngeniusoneApr 25, 2025
- CVE-2021-3520126Monitor
NEI in NETSCOUT nGeniusONE 6.3.0 build 1196 allows XML External Entity (XXE) attacks.
MediumCVSS 6.5No exploitEPSS 1%netscout · ngeniusoneSep 30, 2021
- CVE-2025-3297926Monitor
NETSCOUT nGeniusONE before 6.4.0 b2350 allows Arbitrary File Creation by authenticated users.
MediumCVSS 6.5No exploitEPSS 0%netscout · ngeniusoneApr 25, 2025
- CVE-2023-2700024Monitor
Cross Site Scripting vulnerability found in NetScoutnGeniusOne v.6.3.4 allows a remote attacker to execute arbitrary code via the name param
MediumCVSS 6.1No exploitEPSS 1%netscout · ngeniusoneJan 8, 2024
- CVE-2023-4117024Monitor
NetScout nGeniusONE 6.3.4 build 2298 allows a Reflected Cross-Site scripting vulnerability.
MediumCVSS 6.1No exploitEPSS 0%netscout · ngeniusoneDec 7, 2023
- CVE-2022-4402524Monitor
An issue was discovered in NetScout nGeniusONE 6.3.2 before P10.
MediumCVSS 6.1No exploitEPSS 0%netscout · ngeniusoneJan 27, 2023
- CVE-2022-4402624Monitor
An issue was discovered in NetScout nGeniusONE 6.3.2 before P10.
MediumCVSS 6.1No exploitEPSS 0%netscout · ngeniusoneJan 27, 2023
- CVE-2022-4402924Monitor
An issue was discovered in NetScout nGeniusONE 6.3.2 before P10.
MediumCVSS 6.1No exploitEPSS 0%netscout · ngeniusoneJan 27, 2023
- CVE-2022-4402724Monitor
An issue was discovered in NetScout nGeniusONE 6.3.2 before P10.
MediumCVSS 6.1No exploitEPSS 0%netscout · ngeniusoneJan 27, 2023
- CVE-2022-4402424Monitor
An issue was discovered in NetScout nGeniusONE 6.3.2 before P10.
MediumCVSS 6.1No exploitEPSS 0%netscout · ngeniusoneJan 27, 2023
- CVE-2022-4402824Monitor
An issue was discovered in NetScout nGeniusONE 6.3.2 before P10.
MediumCVSS 6.1No exploitEPSS 0%netscout · ngeniusoneJan 27, 2023