CVE-2025-32986

CVSS 3.1 Score 7.5 of 10 (high)

Details

Published Apr 25, 2025
Updated: Apr 29, 2025
CWE ID 200

Summary

CVE-2025-32986 is a vulnerability affecting NETSCOUT's nGeniusONE before version 6.4.0 b2350. This issue allows unauthenticated users to access sensitive files on an endpoint, posing a significant risk to data confidentiality. The vulnerability occurs due to insufficient authentication checks, enabling attackers to bypass security measures and access protected information. Organizations using impacted versions of nGeniusONE are advised to upgrade to the latest version or apply relevant patches to mitigate this issue. Failure to address this vulnerability can lead to data breaches and potential system compromise.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share