Nozomi Networks Inc.
First CVE: Feb 22, 2021Active for: 5 years
275
CVEs Published
More CVEs Published than 82% of tracked CNAs
45.8
Avg CVEs / Year
More Avg CVEs / Year than 83% of tracked CNAs
7.2
Avg CVSS Score
Higher Avg CVSS Score than 53% of tracked CNAs
0.0%
In CISA KEV
Bottom 1%
Trends Over Time
The number and severity of CVEs published by Nozomi Networks Inc. over time
Volume of CVEsAvg CVSS Base Score
First CVE
Feb 22, 2021
5 years ago
Most Recent CVE
Jul 9, 2026
15 days ago
Top CVEs
All CVEs published by Nozomi Networks Inc. as a CNA, regardless of affected vendor or product.
275 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2025-41272CRITICAL Nozomi Networks Labs identified a CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') in the Console WebUI in Waterfall WF-500 TX and | May 29, 2026 | 9.8 | 39 | NO | NO |
CVE-2025-41277CRITICAL Nozomi Networks Labs identified a CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') in the Console WebUI in Waterfall WF-500 TX and | May 29, 2026 | 9.8 | 38 | NO | NO |
CVE-2025-41276CRITICAL Nozomi Networks Labs identified a CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') in the Console WebUI in Waterfall WF-500 TX and | May 29, 2026 | 9.8 | 38 | NO | NO |
CVE-2025-41275CRITICAL Nozomi Networks Labs identified a CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') in the Console WebUI in Waterfall WF-500 TX and | May 29, 2026 | 9.8 | 38 | NO | NO |
CVE-2025-41274CRITICAL Nozomi Networks Labs identified a CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') in the Console WebUI in Waterfall WF-500 TX and | May 29, 2026 | 9.8 | 38 | NO | NO |
CVE-2025-41273CRITICAL Nozomi Networks Labs identified a CWE-288: Authentication Bypass Using an Alternate Path or Channel in the Console WebUI in Waterfall WF-500 TX and RX Hosts in version 7.9.1.0 R250 | May 29, 2026 | 9.8 | 38 | NO | NO |
CVE-2025-41270CRITICAL Nozomi Networks Labs identified a CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') in the Console WebUI in Waterfall WF-500 TX and | May 29, 2026 | 9.8 | 38 | NO | NO |
CVE-2025-41269CRITICAL Nozomi Networks Labs identified a CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') in the Console WebUI in Waterfall WF-500 TX and | May 29, 2026 | 9.8 | 38 | NO | NO |
CVE-2025-41268CRITICAL Nozomi Networks Labs identified a CWE-23: Relative Path Traversal in the Administration WebUI in Waterfall WF-500 TX and RX Hosts in version 7.9.1.0 R2502171040 that allows remote | May 29, 2026 | 9.1 | 36 | NO | NO |
CVE-2026-33390HIGH An Incorrect Privilege Assignment vulnerability was discovered in the synchronization functionality due to Arc sensors receiving CLI permissions. An authenticated user with limited | Jul 9, 2026 | 8.1 | 34 | NO | NO |
CVE Severity & Scoring
Severity distribution of CVEs published by this CNA275 CVEs
32%
51%
15%
Severity distribution among all CVEs352,231 CVEs
45%
40%
11%
LowMediumHighCritical
Attack Vector
Local28 (10.2%)
Network222 (80.7%)
Unknown0 (0.0%)
Physical4 (1.5%)
Adjacent Network17 (6.2%)
Attack Complexity
Low248 (90.2%)
High27 (9.8%)
Unknown0 (0.0%)
User Interaction
None232 (84.4%)
Unknown0 (0.0%)
Required40 (14.5%)
Privileges Required
Low74 (26.9%)
High42 (15.3%)
None159 (57.8%)
Unknown0 (0.0%)
Exploit Exposure
Signals from CVEs in this cna scope (275 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
An overview of all social media posts that mention a CVE ID published by Nozomi Networks Inc. as a CNA.
Media Mentions
Media articles that mention a CVE ID published by Nozomi Networks Inc. as a CNA — matched by CVE ID, not by organization name.