Netscout Ngeniusone
Don't miss out!
Thousands of developers use stack.watch to stay informed.Get an email whenever new security vulnerabilities are reported in Netscout Ngeniusone.
By the Year
In 2026 there have been 0 vulnerabilities in Netscout Ngeniusone. Last year, in 2025 Ngeniusone had 8 security vulnerabilities published. Right now, Ngeniusone is on track to have less security vulnerabilities in 2026 than it did last year.
| Year | Vulnerabilities | Average Score |
|---|---|---|
| 2026 | 0 | 0.00 |
| 2025 | 8 | 0.00 |
| 2024 | 3 | 7.10 |
| 2023 | 15 | 5.67 |
| 2022 | 3 | 9.47 |
| 2021 | 8 | 5.36 |
It may take a day or so for new Ngeniusone vulnerabilities to show up in the stats or in the list of recent security vulnerabilities. Additionally vulnerabilities may be tagged under a different product or component name.
Recent Netscout Ngeniusone Security Vulnerabilities
NetScout nGeniusONE Weak Sudo Config pre 6.4.0 P11 b3245
CVE-2025-32980
- April 25, 2025
NETSCOUT nGeniusONE before 6.4.0 P11 b3245 has a Weak Sudo Configuration.
NETSCOUT nGeniusONE <6.4.0 b2350: Authenticated Arbitrary File Creation
CVE-2025-32979
- April 25, 2025
NETSCOUT nGeniusONE before 6.4.0 b2350 allows Arbitrary File Creation by authenticated users.
NETSCOUT nGeniusONE insecure permissions on nGeniusCLI before 6.4.0
CVE-2025-32981
- April 25, 2025
NETSCOUT nGeniusONE before 6.4.0 b2350 allows local users to leverage Insecure Permissions for the nGeniusCLI File.
nGeniusONE Report Module Broken Auth before 6.4.0 b2350
CVE-2025-32982
- April 25, 2025
NETSCOUT nGeniusONE before 6.4.0 b2350 has a Broken Authorization Schema for the report module.
NETSCOUT nGeniusONE <6.4.0 b2350 TID via Stack Trace
CVE-2025-32983
- April 25, 2025
NETSCOUT nGeniusONE before 6.4.0 b2350 allows Technical Information Disclosure via a Stack Trace.
Stored XSS in NETSCOUT nGeniusONE <6.4.0 via POST param
CVE-2025-32984
- April 25, 2025
NETSCOUT nGeniusONE before 6.4.0 b2350 allows Stored Cross-Site Scripting (XSS) via a certain POST parameter.
NETSCOUT nGeniusONE <6.4.0 hardcoded creds in JAR
CVE-2025-32985
- April 25, 2025
NETSCOUT nGeniusONE before 6.4.0 b2350 has Hardcoded Credentials that can be obtained from JAR files.
nGeniusONE <6.4.0 b2350: Sensitive File Access via Unauth Endpoint
CVE-2025-32986
- April 25, 2025
NETSCOUT nGeniusONE before 6.4.0 b2350 has a Sensitive File Accessible Without Proper Authentication to an endpoint.
XSS in NetScout GeniusOne 6.3.4 via name param on Profile/Excl List
CVE-2023-27000
6.1 - Medium
- January 09, 2024
Cross Site Scripting vulnerability found in NetScoutnGeniusOne v.6.3.4 allows a remote attacker to execute arbitrary code via the name parameter of the Profile and Exclusion List page(s).
XSS
nGeniusOne v6.3.4 RCE/DoS via crafted file
CVE-2023-26999
9.8 - Critical
- January 09, 2024
An issue found in NetScout nGeniusOne v.6.3.4 allows a remote attacker to execute arbitrary code and cause a denial of service via a crafted file.
XXE
NetScout GeniusOne v6.3.4 XSS via Alert 'creator' Param
CVE-2023-26998
5.4 - Medium
- January 09, 2024
Cross Site Scripting vulnerability found in NetScoutnGeniusOne v.6.3.4 allows a remote attacker to execute arbitrary code via the creator parameter of the Alert Configuration page.
XSS
Stored XSS in NetScout nGeniusONE 6.3.4 build 2298
CVE-2023-41168
5.4 - Medium
- December 07, 2023
NetScout nGeniusONE 6.3.4 build 2298 allows a Stored Cross-Site scripting vulnerability (issue 1 of 4).
XSS
Stored XSS in NetScout nGeniusONE 6.3.4 (build 2298)
CVE-2023-41169
5.4 - Medium
- December 07, 2023
NetScout nGeniusONE 6.3.4 build 2298 allows a Stored Cross-Site scripting vulnerability (issue 2 of 4).
XSS
nGeniusONE 6.3.4 Reflected XSS in NetScout NGS
CVE-2023-41170
6.1 - Medium
- December 07, 2023
NetScout nGeniusONE 6.3.4 build 2298 allows a Reflected Cross-Site scripting vulnerability.
XSS
Stored XSS in NetScout nGeniusONE 6.3.4 build 2298
CVE-2023-41171
5.4 - Medium
- December 07, 2023
NetScout nGeniusONE 6.3.4 build 2298 allows a Stored Cross-Site scripting vulnerability (issue 3 of 4).
XSS
NetScout nGeniusONE 6.3.4 Build 2298 XSS Vulnerability (CVE-2023-41172)
CVE-2023-41172
5.4 - Medium
- December 07, 2023
NetScout nGeniusONE 6.3.4 build 2298 allows a Stored Cross-Site scripting vulnerability (issue 4 of 4).
XSS
Authenticated Reflected XSS in NETSCOUT nGeniusONE 6.3.4 (Build 2298)
CVE-2023-41905
5.4 - Medium
- December 07, 2023
NETSCOUT nGeniusONE 6.3.4 build 2298 allows a Reflected Cross-Site scripting (XSS) vulnerability by an authenticated user.
XSS
NetScout nGeniusONE 6.3.2 Open Redirection in URL Param
CVE-2022-44718
3.5 - Low
- January 27, 2023
An issue was discovered in NetScout nGeniusONE 6.3.2 build 904. Open Redirection can occur (issue 2 of 2). After successful login, an attacker must visit the vulnerable parameter and inject a crafted payload to successfully redirect to an unknown host. The attack vector is Network, and the Attack Complexity required is High. Privileges required are administrator, User Interaction is required, and Scope is unchanged. The user must visit the vulnerable parameter and inject a crafted payload to successfully redirect to an unknown host.
Open Redirect
NetScout nGeniusONE 6.3.2 Build 904 Open Redirect Vulnerability (CVE-2022-44717)
CVE-2022-44717
3.1 - Low
- January 27, 2023
An issue was discovered in NetScout nGeniusONE 6.3.2 build 904. Open Redirection can occur (issue 1 of 2). After successful login, an attacker must visit the vulnerable parameter and inject a crafted payload to successfully redirect to an unknown host. The attack vector is Network, and the Attack Complexity required is High. Privileges required are administrator, User Interaction is required, and Scope is unchanged. The user must visit the vulnerable parameter and inject a crafted payload to successfully redirect to an unknown host.
Open Redirect
NetScout nGeniusONE 6.3.2 Improper File Perms CVE202244715
CVE-2022-44715
8.8 - High
- January 27, 2023
Improper File Permissions in NetScout nGeniusONE 6.3.2 build 904 allows authenticated remote users to gain permissions via a crafted payload.
Incorrect Permission Assignment for Critical Resource
NetScout nGeniusONE 6.3.2 (before P10) Reflected XSS Vulnerability
CVE-2022-44024
6.1 - Medium
- January 27, 2023
An issue was discovered in NetScout nGeniusONE 6.3.2 before P10. It allows Reflected Cross-Site Scripting (XSS), issue 1 of 6.
XSS
NetScout nGeniusONE 6.3.2 Reflected XSS before P10
CVE-2022-44025
6.1 - Medium
- January 27, 2023
An issue was discovered in NetScout nGeniusONE 6.3.2 before P10. It allows Reflected Cross-Site Scripting (XSS), issue 2 of 6.
XSS
Reflected XSS in NetScout nGeniusONE 6.3.2 before P10
CVE-2022-44026
6.1 - Medium
- January 27, 2023
An issue was discovered in NetScout nGeniusONE 6.3.2 before P10. It allows Reflected Cross-Site Scripting (XSS), issue 3 of 6.
XSS
nGeniusONE 6.3.2 (PreP10) Reflected XSS
CVE-2022-44027
6.1 - Medium
- January 27, 2023
An issue was discovered in NetScout nGeniusONE 6.3.2 before P10. It allows Reflected Cross-Site Scripting (XSS), issue 4 of 6.
XSS
nGeniusONE 6.3.2 Reflected XSS before P10
CVE-2022-44028
6.1 - Medium
- January 27, 2023
An issue was discovered in NetScout nGeniusONE 6.3.2 before P10. It allows Reflected Cross-Site Scripting (XSS), issue 5 of 6.
XSS
Reflected XSS in NetScout nGeniusONE 6.3.2 before P10
CVE-2022-44029
6.1 - Medium
- January 27, 2023
An issue was discovered in NetScout nGeniusONE 6.3.2 before P10. It allows Reflected Cross-Site Scripting (XSS), issue 6 of 6.
XSS
NetScout nGeniusONE 6.3.2
CVE-2021-45983
9.8 - Critical
- June 02, 2022
NetScout nGeniusONE 6.3.2 allows Java RMI Code Execution.
NetScout nGeniusONE 6.3.2
CVE-2021-45982
8.8 - High
- June 02, 2022
NetScout nGeniusONE 6.3.2 allows Arbitrary File Upload by a privileged user.
Unrestricted File Upload
NetScout nGeniusONE 6.3.2
CVE-2021-45981
9.8 - Critical
- June 02, 2022
NetScout nGeniusONE 6.3.2 allows an XML External Entity (XXE) attack.
XXE
NETSCOUT Systems nGeniusONE version 6.3.0 build 1196
CVE-2021-35205
5.4 - Medium
- September 30, 2021
NETSCOUT Systems nGeniusONE version 6.3.0 build 1196 allows URL redirection in redirector.
Open Redirect
NETSCOUT nGeniusONE 6.3.0 build 1004 and earlier
CVE-2021-35198
5.4 - Medium
- September 30, 2021
NETSCOUT nGeniusONE 6.3.0 build 1004 and earlier allows Stored Cross-Site Scripting (XSS) in the Packet Analysis module.
XSS
NETSCOUT nGeniusONE 6.3.0 build 1196 and earlier
CVE-2021-35199
5.4 - Medium
- September 30, 2021
NETSCOUT nGeniusONE 6.3.0 build 1196 and earlier allows Stored Cross-Site Scripting (XSS) in UploadFile.
XSS
NETSCOUT nGeniusONE 6.3.0 build 1196
CVE-2021-35200
4.8 - Medium
- September 30, 2021
NETSCOUT nGeniusONE 6.3.0 build 1196 allows high-privileged users to achieve Stored Cross-Site Scripting (XSS) in FDSQueryService.
XSS
NEI in NETSCOUT nGeniusONE 6.3.0 build 1196
CVE-2021-35201
6.5 - Medium
- September 30, 2021
NEI in NETSCOUT nGeniusONE 6.3.0 build 1196 allows XML External Entity (XXE) attacks.
XXE
NETSCOUT Systems nGeniusONE 6.3.0 build 1196
CVE-2021-35202
4.3 - Medium
- September 30, 2021
NETSCOUT Systems nGeniusONE 6.3.0 build 1196 allows Authorization Bypass (to access an endpoint) in FDSQueryService.
Incorrect Permission Assignment for Critical Resource
NETSCOUT Systems nGeniusONE 6.3.0 build 1196
CVE-2021-35203
5.7 - Medium
- September 30, 2021
NETSCOUT Systems nGeniusONE 6.3.0 build 1196 allows Arbitrary File Read operations via the FDSQueryService endpoint.
Files or Directories Accessible to External Parties
NETSCOUT Systems nGeniusONE 6.3.0 build 1196
CVE-2021-35204
5.4 - Medium
- September 30, 2021
NETSCOUT Systems nGeniusONE 6.3.0 build 1196 allows Reflected Cross-Site Scripting (XSS) in the support endpoint.
XSS
Stay on top of Security Vulnerabilities
Want an email whenever new vulnerabilities are published for Netscout Ngeniusone or by Netscout? Click the Watch button to subscribe.