Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Netscout

First CVE: Apr 10, 2009Active for: 17 yearsTotal CVEs: 41
13.9
VTI Score
Low

Netscout's vulnerability footprint centers on a focused line of network monitoring, diagnostics, and wireless assessment appliances and software, including its NGeniusOne and NGeniusPulse platforms, AirMagnet Enterprise, and dedicated sensor hardware. Vulnerabilities affecting the vendor skew toward serious outcomes, with a meaningful share reaching critical severity, reflecting the privileged role these devices occupy in network infrastructure and their exposure to both administrative and untrusted inputs. The recurring weakness classes—cross-site scripting, XML external entity injection, improper permission assignment, open redirect, and sensitive-information exposure—cluster around web-facing management interfaces and configuration handling that are characteristic of centralized monitoring and orchestration platforms. Defenders should prioritize patches for internet-reachable instances and review access controls on these typically high-value targets. Current severity, exploitation activity, and exposure counts are shown alongside this summary.

FAUCET AI Generated
41
Total CVEs
More Total CVEs than 98% of tracked vendors
0.5
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 9% of tracked vendors
6.7
Avg CVSS Score
Higher Avg CVSS Score than 44% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Netscout over time

Volume of CVEsAvg CVSS Base Score
First CVE
Apr 10, 2009
17 years ago
Most Recent CVE
Apr 25, 2025
455 days ago

Products(11 total)

Top CVEs

Signals from CVEs in this vendor scope (41 CVEs).

41 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2023-26999CRITICAL
An issue found in NetScout nGeniusOne v.6.3.4 allows a remote attacker to execute arbitrary code and cause a denial of service via a crafted file.
Jan 9, 20249.833NONO
CVE-2021-45983CRITICAL
NetScout nGeniusONE 6.3.2 allows Java RMI Code Execution.
Jun 2, 20229.831NONO
CVE-2023-40300CRITICAL
NETSCOUT nGeniusPULSE 3.8 has a Hardcoded Cryptographic Key.
Dec 7, 20239.829NONO
CVE-2021-45981CRITICAL
NetScout nGeniusONE 6.3.2 allows an XML External Entity (XXE) attack.
Jun 2, 20229.829NONO
CVE-2023-40302CRITICAL
NETSCOUT nGeniusPULSE 3.8 has Weak File Permissions Vulnerability
Dec 7, 20239.128NONO
CVE-2025-32985CRITICAL
NETSCOUT nGeniusONE before 6.4.0 b2350 has Hardcoded Credentials that can be obtained from JAR files.
Apr 25, 20259.827NONO
CVE-2022-44715HIGH
Improper File Permissions in NetScout nGeniusONE 6.3.2 build 904 allows authenticated remote users to gain permissions via a crafted payload.
Jan 27, 20238.827NONO
CVE-2021-45982HIGH
NetScout nGeniusONE 6.3.2 allows Arbitrary File Upload by a privileged user.
Jun 2, 20228.827NONO
CVE-2023-40301CRITICAL
NETSCOUT nGeniusPULSE 3.8 has a Command Injection Vulnerability.
Dec 7, 20239.826NONO
CVE-2020-28251HIGH
NETSCOUT AirMagnet Enterprise 11.1.4 build 37257 and earlier has a sensor escalated privileges vulnerability that can be exploited to provide someone with administrative access to
Dec 3, 20208.124NONO
View all 41 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products41 CVEs
59%
20%
17%
Severity distribution among all CVEs352,231 CVEs
45%
40%
11%
LowMediumHighCritical
Attack Vector
Local1 (2.4%)
Network39 (95.1%)
Unknown1 (2.4%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low38 (92.7%)
High2 (4.9%)
Unknown1 (2.4%)
User Interaction
None15 (36.6%)
Unknown1 (2.4%)
Required25 (61.0%)
Privileges Required
Low15 (36.6%)
High3 (7.3%)
None22 (53.7%)
Unknown1 (2.4%)

Exploit Exposure

Signals from CVEs in this vendor scope (41 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Netscout.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Netscout — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Netscout's Products

View all 1 CNAs →

Top CWEs