Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Gigamon

First CVE: Apr 29, 2020Active for: 6 yearsTotal CVEs: 6

Gigamon develops network visibility and traffic intelligence appliances centered on its GigaVue product line, which operates as a critical inspection and analytics layer in enterprise infrastructure. The durable signal across its disclosures centers on application and data-handling weaknesses, including cleartext storage of sensitive information, path traversal, cross-site scripting, unrestricted file upload, and use of weak cryptographic algorithms—patterns consistent with web-based management interfaces and the data-processing demands of a monitoring platform. Current severity, exploitation activity, and exposure counts are shown alongside this summary.

FAUCET AI Generated
6
Total CVEs
More Total CVEs than 86% of tracked vendors
0.8
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 10% of tracked vendors
4.8
Avg CVSS Score
Higher Avg CVSS Score than 10% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Gigamon over time

Volume of CVEsAvg CVSS Base Score
First CVE
Apr 29, 2020
6 years ago
Most Recent CVE
Jun 29, 2026
25 days ago

Products(2 total)

Top CVEs

Signals from CVEs in this vendor scope (6 CVEs).

6 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2026-36848HIGH
Gigamon GVOS v5.16.1 and below is vulnerable to Directory Traversal in the GVOS H-VUE subsystem.
Jun 29, 20267.533NONO
CVE-2020-12252MEDIUM
An issue was discovered in Gigamon GigaVUE 5.5.01.11. The upload functionality allows an arbitrary file upload for an authenticated user. If an executable file is uploaded into the
Apr 29, 20206.221NONO
CVE-2023-0746MEDIUM
The help page in GigaVUE-FM, when using GigaVUE-OS software version 5.0 202, does not require an authenticated user. An attacker could enforce a user into inserting malicious JavaS
Mar 10, 20236.119NONO
CVE-2020-23249MEDIUM
GigaVUE-OS (GVOS) 5.4 - 5.9 stores a Redis database password in plaintext.
Jan 5, 20214.718NONO
CVE-2020-23250LOW
GigaVUE-OS (GVOS) 5.4 - 5.9 uses a weak algorithm for a hash stored in internal database.
Jan 5, 20212.311NONO
CVE-2020-12251LOW
An issue was discovered in Gigamon GigaVUE 5.5.01.11. The upload functionality allows an authenticated user to change the filename value (in the POST method) from the original file
Apr 29, 20202.211NONO
View all 6 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products6 CVEs
33%
50%
17%
Severity distribution among all CVEs352,294 CVEs
45%
40%
11%
LowMediumHigh
Attack Vector
Local1 (16.7%)
Network5 (83.3%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low4 (66.7%)
High2 (33.3%)
Unknown0 (0.0%)
User Interaction
None5 (83.3%)
Unknown0 (0.0%)
Required1 (16.7%)
Privileges Required
Low0 (0.0%)
High4 (66.7%)
None2 (33.3%)
Unknown0 (0.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (6 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Gigamon.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Gigamon — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Gigamon's Products

View all 2 CNAs →

Top CWEs