VendorsNetscoutngeniusone6.3.2
Vulnerabilities

Netscout Ngeniusone 6.3.2

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

12CVEs
CVE-2021-45983
NetScout nGeniusONE 6.3.2 allows Java RMI Code Execution.
Published 2022-06-02 · Modified
9.8EPSS 0.014
CVE-2021-45981
NetScout nGeniusONE 6.3.2 allows an XML External Entity (XXE) attack.
Published 2022-06-02 · Modified
9.8EPSS 0.011
CVE-2021-45982
NetScout nGeniusONE 6.3.2 allows Arbitrary File Upload by a privileged user.
Published 2022-06-02 · Modified
8.8EPSS 0.010
CVE-2022-44715
Improper File Permissions in NetScout nGeniusONE 6.3.2 build 904 allows authenticated remote users to gain permissions via a crafted payload.
Published 2023-01-27 · Modified
8.8EPSS 0.007
CVE-2022-44026
An issue was discovered in NetScout nGeniusONE 6.3.2 before P10. It allows Reflected Cross-Site Scripting (XSS), issue 3 of 6.
Published 2023-01-27 · Modified
7.1EPSS 0.004
CVE-2022-44024
An issue was discovered in NetScout nGeniusONE 6.3.2 before P10. It allows Reflected Cross-Site Scripting (XSS), issue 1 of 6.
Published 2023-01-27 · Modified
6.1EPSS 0.004
CVE-2022-44025
An issue was discovered in NetScout nGeniusONE 6.3.2 before P10. It allows Reflected Cross-Site Scripting (XSS), issue 2 of 6.
Published 2023-01-27 · Modified
6.1EPSS 0.004
CVE-2022-44027
An issue was discovered in NetScout nGeniusONE 6.3.2 before P10. It allows Reflected Cross-Site Scripting (XSS), issue 4 of 6.
Published 2023-01-27 · Modified
6.1EPSS 0.004
CVE-2022-44028
An issue was discovered in NetScout nGeniusONE 6.3.2 before P10. It allows Reflected Cross-Site Scripting (XSS), issue 5 of 6.
Published 2023-01-27 · Modified
6.1EPSS 0.004
CVE-2022-44029
An issue was discovered in NetScout nGeniusONE 6.3.2 before P10. It allows Reflected Cross-Site Scripting (XSS), issue 6 of 6.
Published 2023-01-27 · Modified
6.1EPSS 0.004
CVE-2022-44718
An issue was discovered in NetScout nGeniusONE 6.3.2 build 904. Open Redirection can occur (issue 2 of 2). After successful login, an attacker must visit the vulnerable parameter and inject a crafted payload to successfully redirect to an unknown host. The attack vector is Network, and the Attack Complexity required is High. Privileges required are administrator, User Interaction is required, and Scope is unchanged. The user must visit the vulnerable parameter and inject a crafted payload to successfully redirect to an unknown host.
Published 2023-01-27 · Modified
3.5EPSS 0.003
CVE-2022-44717
An issue was discovered in NetScout nGeniusONE 6.3.2 build 904. Open Redirection can occur (issue 1 of 2). After successful login, an attacker must visit the vulnerable parameter and inject a crafted payload to successfully redirect to an unknown host. The attack vector is Network, and the Attack Complexity required is High. Privileges required are administrator, User Interaction is required, and Scope is unchanged. The user must visit the vulnerable parameter and inject a crafted payload to successfully redirect to an unknown host.
Published 2023-01-27 · Modified
3.1EPSS 0.003