Ngeniusone

Vendor:

First CVE: Sep 30, 2021 · Active for 4 years

36
Total CVEs
More Total CVEs than 97% of tracked products
7.2
Avg CVEs / Year
Higher CVE frequency than 94% of tracked products
6.4
Avg CVSS
Higher Avg CVSS than 31% of tracked products
0.0%
KEV Rate
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact Ngeniusone over time

Volume of CVEsAvg CVSS Base Score
First CVE
Sep 30, 2021
4 years ago
Most Recent CVE
Apr 25, 2025
459 days ago

CVE Severity & Scoring

Ngeniusone36 CVEs
All CVEs353,240 CVEs
LowMediumHighCritical
Attack Vector
Local1 (2.8%)
Network35 (97.2%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low35 (97.2%)
High1 (2.8%)
Unknown0 (0.0%)
User Interaction
None11 (30.6%)
Unknown0 (0.0%)
Required25 (69.4%)
Privileges Required
Low15 (41.7%)
High3 (8.3%)
None18 (50.0%)
Unknown0 (0.0%)

Top CVEs

Signals from CVEs in this product scope (36 CVEs).

36 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
An issue found in NetScout nGeniusOne v.6.3.4 allows a remote attacker to execute arbitrary code and cause a denial of service via a crafted file.
Jan 9, 20249.833NONO
NetScout nGeniusONE 6.3.2 allows Java RMI Code Execution.
Jun 2, 20229.831NONO
NetScout nGeniusONE 6.3.2 allows an XML External Entity (XXE) attack.
Jun 2, 20229.829NONO
NETSCOUT nGeniusONE before 6.4.0 b2350 has Hardcoded Credentials that can be obtained from JAR files.
Apr 25, 20259.827NONO
Improper File Permissions in NetScout nGeniusONE 6.3.2 build 904 allows authenticated remote users to gain permissions via a crafted payload.
Jan 27, 20238.827NONO
NetScout nGeniusONE 6.3.2 allows Arbitrary File Upload by a privileged user.
Jun 2, 20228.827NONO
NETSCOUT nGeniusONE before 6.4.0 b2350 allows Technical Information Disclosure via a Stack Trace.
Apr 25, 20257.522NONO
An issue was discovered in NetScout nGeniusONE 6.3.2 before P10. It allows Reflected Cross-Site Scripting (XSS), issue 6 of 6.
Jan 27, 20236.122NONO
NETSCOUT nGeniusONE before 6.4.0 b2350 has a Sensitive File Accessible Without Proper Authentication to an endpoint.
Apr 25, 20257.521NONO
NETSCOUT nGeniusONE before 6.4.0 b2350 has a Broken Authorization Schema for the report module.
Apr 25, 20257.521NONO

Exploit Exposure

Signals from CVEs in this product scope (36 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

Signals from CVEs in this product scope (36 CVEs).

Media Mentions

Signals from CVEs in this product scope (36 CVEs).

Top CNAs Publishing CVEs For Ngeniusone

Top CWEs

Versions

VersionCVE CountAvg CVSSAvg EPSSKEVExploits
6.3.496.00.5%00
6.3.2126.70.6%00
6.3.065.30.6%00