Filtered by vendor Netscout
Subscriptions
Total
34 CVE
CVE | Vendors | Products | Updated | CVSS v3.1 |
---|---|---|---|---|
CVE-2008-6701 | 1 Netscout | 2 Ngenius Infinistream, Visualizer | 2025-04-09 | N/A |
NetScout (formerly Network General) Visualizer V2100 and InfiniStream i1730 do not restrict access to ResourceManager/en_US/domains/add_domain.jsp, which allows remote attackers to gain administrator privileges via a direct request. | ||||
CVE-2022-44024 | 1 Netscout | 1 Ngeniusone | 2025-03-28 | 6.1 Medium |
An issue was discovered in NetScout nGeniusONE 6.3.2 before P10. It allows Reflected Cross-Site Scripting (XSS), issue 1 of 6. | ||||
CVE-2022-44029 | 1 Netscout | 1 Ngeniusone | 2025-03-28 | 6.1 Medium |
An issue was discovered in NetScout nGeniusONE 6.3.2 before P10. It allows Reflected Cross-Site Scripting (XSS), issue 6 of 6. | ||||
CVE-2022-44025 | 1 Netscout | 1 Ngeniusone | 2025-03-28 | 6.1 Medium |
An issue was discovered in NetScout nGeniusONE 6.3.2 before P10. It allows Reflected Cross-Site Scripting (XSS), issue 2 of 6. | ||||
CVE-2022-44715 | 1 Netscout | 1 Ngeniusone | 2025-03-28 | 8.8 High |
Improper File Permissions in NetScout nGeniusONE 6.3.2 build 904 allows authenticated remote users to gain permissions via a crafted payload. | ||||
CVE-2022-44028 | 1 Netscout | 1 Ngeniusone | 2025-03-28 | 6.1 Medium |
An issue was discovered in NetScout nGeniusONE 6.3.2 before P10. It allows Reflected Cross-Site Scripting (XSS), issue 5 of 6. | ||||
CVE-2022-44027 | 1 Netscout | 1 Ngeniusone | 2025-03-28 | 6.1 Medium |
An issue was discovered in NetScout nGeniusONE 6.3.2 before P10. It allows Reflected Cross-Site Scripting (XSS), issue 4 of 6. | ||||
CVE-2022-44026 | 1 Netscout | 1 Ngeniusone | 2025-03-28 | 7.1 High |
An issue was discovered in NetScout nGeniusONE 6.3.2 before P10. It allows Reflected Cross-Site Scripting (XSS), issue 3 of 6. | ||||
CVE-2022-44718 | 1 Netscout | 1 Ngeniusone | 2025-03-28 | 3.5 Low |
An issue was discovered in NetScout nGeniusONE 6.3.2 build 904. Open Redirection can occur (issue 2 of 2). After successful login, an attacker must visit the vulnerable parameter and inject a crafted payload to successfully redirect to an unknown host. The attack vector is Network, and the Attack Complexity required is High. Privileges required are administrator, User Interaction is required, and Scope is unchanged. The user must visit the vulnerable parameter and inject a crafted payload to successfully redirect to an unknown host. | ||||
CVE-2022-44717 | 1 Netscout | 1 Ngeniusone | 2025-03-28 | 3.1 Low |
An issue was discovered in NetScout nGeniusONE 6.3.2 build 904. Open Redirection can occur (issue 1 of 2). After successful login, an attacker must visit the vulnerable parameter and inject a crafted payload to successfully redirect to an unknown host. The attack vector is Network, and the Attack Complexity required is High. Privileges required are administrator, User Interaction is required, and Scope is unchanged. The user must visit the vulnerable parameter and inject a crafted payload to successfully redirect to an unknown host. | ||||
CVE-2023-41171 | 1 Netscout | 1 Ngeniusone | 2024-11-26 | 5.4 Medium |
NetScout nGeniusONE 6.3.4 build 2298 allows a Stored Cross-Site scripting vulnerability (issue 3 of 4). | ||||
CVE-2023-41905 | 1 Netscout | 1 Ngeniusone | 2024-11-21 | 5.4 Medium |
NETSCOUT nGeniusONE 6.3.4 build 2298 allows a Reflected Cross-Site scripting (XSS) vulnerability by an authenticated user. | ||||
CVE-2023-41172 | 1 Netscout | 1 Ngeniusone | 2024-11-21 | 5.4 Medium |
NetScout nGeniusONE 6.3.4 build 2298 allows a Stored Cross-Site scripting vulnerability (issue 4 of 4). | ||||
CVE-2023-41170 | 1 Netscout | 1 Ngeniusone | 2024-11-21 | 6.1 Medium |
NetScout nGeniusONE 6.3.4 build 2298 allows a Reflected Cross-Site scripting vulnerability. | ||||
CVE-2023-41169 | 1 Netscout | 1 Ngeniusone | 2024-11-21 | 5.4 Medium |
NetScout nGeniusONE 6.3.4 build 2298 allows a Stored Cross-Site scripting vulnerability (issue 2 of 4). | ||||
CVE-2023-41168 | 1 Netscout | 1 Ngeniusone | 2024-11-21 | 5.4 Medium |
NetScout nGeniusONE 6.3.4 build 2298 allows a Stored Cross-Site scripting vulnerability (issue 1 of 4). | ||||
CVE-2023-40302 | 1 Netscout | 1 Ngeniuspulse | 2024-11-21 | 9.1 Critical |
NETSCOUT nGeniusPULSE 3.8 has Weak File Permissions Vulnerability | ||||
CVE-2023-40301 | 1 Netscout | 1 Ngeniuspulse | 2024-11-21 | 9.8 Critical |
NETSCOUT nGeniusPULSE 3.8 has a Command Injection Vulnerability. | ||||
CVE-2023-40300 | 1 Netscout | 1 Ngeniuspulse | 2024-11-21 | 9.8 Critical |
NETSCOUT nGeniusPULSE 3.8 has a Hardcoded Cryptographic Key. | ||||
CVE-2023-27000 | 1 Netscout | 1 Ngeniusone | 2024-11-21 | 6.1 Medium |
Cross Site Scripting vulnerability found in NetScoutnGeniusOne v.6.3.4 allows a remote attacker to execute arbitrary code via the name parameter of the Profile and Exclusion List page(s). |