Nfsen is a network-flow analysis and visualization tool deployed in monitoring and security operations environments, where its exposure centers on a single product with a durable signal of command-injection and privilege-handling flaws. The recurring weakness classes—OS command injection, improper privilege checking, and injection into downstream components—reflect risks inherent to a system that parses and processes untrusted network data and invokes external tools, a pattern that defenders should monitor closely when the tool operates on untrusted or internet-sourced flow data. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Nfsen over time
Signals from CVEs in this vendor scope (4 CVEs).
4 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2017-6972CRITICAL AlienVault USM and OSSIM before 5.3.7 and NfSen before 1.3.8 have an error in privilege dropping and unnecessarily execute the NfSen Perl code as root, aka AlienVault ID ENG-104945 | Mar 22, 2017 | 9.8 | 50 | NO | YES |
CVE-2017-6971HIGH AlienVault USM and OSSIM before 5.3.7 and NfSen before 1.3.8 allow remote authenticated users to execute arbitrary commands in a privileged context, or launch a reverse shell, via | Mar 22, 2017 | 8.8 | 46 | NO | YES |
CVE-2017-7175CRITICAL NfSen before 1.3.8 allows remote attackers to execute arbitrary OS commands via shell metacharacters in the customfmt parameter (aka the "Custom output format" field). | Jul 10, 2017 | 9.9 | 43 | NO | YES |
CVE-2017-6970HIGH AlienVault USM and OSSIM before 5.3.7 and NfSen before 1.3.8 allow local users to execute arbitrary commands in a privileged context via an NfSen socket, aka AlienVault ID ENG-1048 | Mar 22, 2017 | 8.4 | 35 | NO | YES |
Signals from CVEs in this vendor scope (4 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Nfsen.
Media articles that mention a CVE ID that affects a product developed by Nfsen — matched by CVE ID, not by vendor name.