Skip to main content

Vendor/product archive

netscout / ngeniusone CVEs

Beta · best-effort

36 CVEs tagged to netscout / ngeniusone4 Critical, 6 High, 24 Medium, 2 Low, 0 Unrated.

CVE-2025-32986

Published Apr 25, 2025

NETSCOUT nGeniusONE before 6.4.0 b2350 has a Sensitive File Accessible Without Proper Authentication to an endpoint.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2025-32985

Published Apr 25, 2025

NETSCOUT nGeniusONE before 6.4.0 b2350 has Hardcoded Credentials that can be obtained from JAR files.

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2025-32984

Published Apr 25, 2025

NETSCOUT nGeniusONE before 6.4.0 b2350 allows Stored Cross-Site Scripting (XSS) via a certain POST parameter.

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-32983

Published Apr 25, 2025

NETSCOUT nGeniusONE before 6.4.0 b2350 allows Technical Information Disclosure via a Stack Trace.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2025-32982

Published Apr 25, 2025

NETSCOUT nGeniusONE before 6.4.0 b2350 has a Broken Authorization Schema for the report module.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2025-32981

Published Apr 25, 2025

NETSCOUT nGeniusONE before 6.4.0 b2350 allows local users to leverage Insecure Permissions for the nGeniusCLI File.

CVSS 7.1 · High
Vendor/product tagsBeta · best-effort

CVE-2025-32979

Published Apr 25, 2025

NETSCOUT nGeniusONE before 6.4.0 b2350 allows Arbitrary File Creation by authenticated users.

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-27000

Published Jan 9, 2024

Cross Site Scripting vulnerability found in NetScoutnGeniusOne v.6.3.4 allows a remote attacker to execute arbitrary code via the name parameter of the Profile and Exclusion List…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-26999

Published Jan 9, 2024

An issue found in NetScout nGeniusOne v.6.3.4 allows a remote attacker to execute arbitrary code and cause a denial of service via a crafted file.

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2023-26998

Published Jan 9, 2024

Cross Site Scripting vulnerability found in NetScoutnGeniusOne v.6.3.4 allows a remote attacker to execute arbitrary code via the creator parameter of the Alert Configuration page.

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-41905

Published Dec 7, 2023

NETSCOUT nGeniusONE 6.3.4 build 2298 allows a Reflected Cross-Site scripting (XSS) vulnerability by an authenticated user.

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-41172

Published Dec 7, 2023

NetScout nGeniusONE 6.3.4 build 2298 allows a Stored Cross-Site scripting vulnerability (issue 4 of 4).

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-41171

Published Dec 7, 2023

NetScout nGeniusONE 6.3.4 build 2298 allows a Stored Cross-Site scripting vulnerability (issue 3 of 4).

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-41170

Published Dec 7, 2023

NetScout nGeniusONE 6.3.4 build 2298 allows a Reflected Cross-Site scripting vulnerability.

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-41169

Published Dec 7, 2023

NetScout nGeniusONE 6.3.4 build 2298 allows a Stored Cross-Site scripting vulnerability (issue 2 of 4).

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-41168

Published Dec 7, 2023

NetScout nGeniusONE 6.3.4 build 2298 allows a Stored Cross-Site scripting vulnerability (issue 1 of 4).

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-44718

Published Jan 27, 2023

An issue was discovered in NetScout nGeniusONE 6.3.2 build 904. Open Redirection can occur (issue 2 of 2). After successful login, an attacker must visit the vulnerable parameter…

CVSS 3.5 · Low
Vendor/product tagsBeta · best-effort

CVE-2022-44717

Published Jan 27, 2023

An issue was discovered in NetScout nGeniusONE 6.3.2 build 904. Open Redirection can occur (issue 1 of 2). After successful login, an attacker must visit the vulnerable parameter…

CVSS 3.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2022-44715

Published Jan 27, 2023

Improper File Permissions in NetScout nGeniusONE 6.3.2 build 904 allows authenticated remote users to gain permissions via a crafted payload.

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2022-44029

Published Jan 27, 2023

An issue was discovered in NetScout nGeniusONE 6.3.2 before P10. It allows Reflected Cross-Site Scripting (XSS), issue 6 of 6.

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-44028

Published Jan 27, 2023

An issue was discovered in NetScout nGeniusONE 6.3.2 before P10. It allows Reflected Cross-Site Scripting (XSS), issue 5 of 6.

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-44027

Published Jan 27, 2023

An issue was discovered in NetScout nGeniusONE 6.3.2 before P10. It allows Reflected Cross-Site Scripting (XSS), issue 4 of 6.

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-44026

Published Jan 27, 2023

An issue was discovered in NetScout nGeniusONE 6.3.2 before P10. It allows Reflected Cross-Site Scripting (XSS), issue 3 of 6.

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-44025

Published Jan 27, 2023

An issue was discovered in NetScout nGeniusONE 6.3.2 before P10. It allows Reflected Cross-Site Scripting (XSS), issue 2 of 6.

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-44024

Published Jan 27, 2023

An issue was discovered in NetScout nGeniusONE 6.3.2 before P10. It allows Reflected Cross-Site Scripting (XSS), issue 1 of 6.

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-25 of 36 CVEsPage 1 of 2