汇总 gigamon 相关全部产品的 CVE 与安全漏洞情报,包括 CVSS、EPSS、公开时间与漏洞情报数据。
常见弱点模式包括 路径处理缺陷与跨站脚本,在 生产负载与软件部署 使用场景中可能带来 文件覆盖与会话劫持 等风险。
相关漏洞数据主要来源于公开漏洞披露与安全公告,可用于评估历史漏洞暴露面与修复优先级。
| CVE | 摘要 | 来源 | 最高 CVSS | EPSS % | 公开时间 | 更新时间 |
|---|---|---|---|---|---|---|
| CVE-2026-36848 | Gigamon GVOS v5.16.1 and below is vulnerable to Directory Traversal in the GVOS H-VUE subsystem. | [email protected] | 7.5 | 0.71% | 2026-06-29 | 2026-06-30 |
| CVE-2023-0746 | The help page in GigaVUE-FM, when using GigaVUE-OS software version 5.0 202, does not require an authenticated user. An attacker could enforce a user into inserting malicious JavaScript code into the URI, that could lead to a Reflected Cross site Scripting. | [email protected] | 6.3 | 0.35% | 2023-03-10 | 2026-06-17 |
| CVE-2020-23250 | GigaVUE-OS (GVOS) 5.4 - 5.9 uses a weak algorithm for a hash stored in internal database. | [email protected] | 2.3 | 0.20% | 2021-01-05 | 2026-06-16 |
| CVE-2020-23249 | GigaVUE-OS (GVOS) 5.4 - 5.9 stores a Redis database password in plaintext. | [email protected] | 4.7 | 0.37% | 2021-01-05 | 2026-06-16 |
| CVE-2020-12252 | An issue was discovered in Gigamon GigaVUE 5.5.01.11. The upload functionality allows an arbitrary file upload for an authenticated user. If an executable file is uploaded into the www-root directory, then it could yield remote code execution via the filename parameter. | [email protected] | 6.2 | 1.97% | 2020-04-29 | 2026-06-16 |
| CVE-2020-12251 | An issue was discovered in Gigamon GigaVUE 5.5.01.11. The upload functionality allows an authenticated user to change the filename value (in the POST method) from the original filename to achieve directory traversal via a ../ sequence and, for example, obtain a complete directory listing of the machine. | [email protected] | 2.2 | 1.20% | 2020-04-29 | 2026-06-16 |