tenable

173 tracked vulnerabilities.

CVE-2024-3292 HIGH
Nessus <unknown> - Privilege Escalation
May 17, 2024
CVSS 8.2
EPSS 0.00
CVE-2024-3291 HIGH
Nessus Agent <10.6.4 - Privilege Escalation
May 17, 2024
CVSS 7.8
EPSS 0.00
CVE-2024-3290 HIGH
Nessus < 10.7.3 - Authenticated Time-of-check Time-of-use Race Condition
May 17, 2024
CVSS 8.2
EPSS 0.00
CVE-2024-3289 HIGH
Nessus <10.7.3 - Privilege Escalation
May 17, 2024
CVSS 7.8
EPSS 0.00
CVE-2024-2390 HIGH
Nessus Plugin - Privilege Escalation
Mar 18, 2024
CVSS 7.8
EPSS 0.00
CVE-2024-1683 HIGH
Tenable Identity Exposure < 3.59.4 - Authenticated DLL Injection via Application File Modification
Feb 23, 2024
CVSS 7.3
EPSS 0.00
CVE-2024-1471 MEDIUM
Tenable Security Center < 6.3.0 - Authenticated HTML Injection via Repository Parameters
Feb 14, 2024
CVSS 5.9
EPSS 0.00
CVE-2024-1367 HIGH
Tenable Security Center < 6.3.0 - Authenticated OS Command Injection via Logging Parameters
Feb 14, 2024
CVSS 7.2
EPSS 0.05
CVE-2024-0971 MEDIUM
Nessus < 10.7.0 - Authenticated SQL Injection
Feb 07, 2024
CVSS 6.5
EPSS 0.00
CVE-2024-0955 MEDIUM
Nessus < 10.7.0 - Authenticated Stored Cross-Site Scripting via Proxy Settings
Feb 07, 2024
CVSS 4.8
EPSS 0.00
CVE-2023-6178 MEDIUM
Nessus < 10.4.4 - Authenticated Arbitrary File Write via Rules Variables
Nov 20, 2023
CVSS 6.8
EPSS 0.00
CVE-2023-6062 MEDIUM
Nessus < 10.5.7 - Authenticated Arbitrary File Write via Rules Variables
Nov 20, 2023
CVSS 6.8
EPSS 0.00
CVE-2023-5847 MEDIUM
Nessus < 10.6.2 and Nessus Agent < 10.4.3 - Privilege Escalation via Crafted File During Installation or Upgrade
Nov 01, 2023
CVSS 6.7
EPSS 0.00
CVE-2023-5624 HIGH
Nessus Network Monitor < 6.3.0 - Authenticated Blind SQL Injection via Parameter Alteration
Oct 26, 2023
CVSS 7.2
EPSS 0.00
CVE-2023-5623 HIGH
Nessus Network Monitor < 6.3.0 - Incorrect Default Permissions
Oct 26, 2023
CVSS 7.0
EPSS 0.00
CVE-2023-5622 HIGH
Nessus Network Monitor < 6.3.0 - Privilege Escalation via File Replacement
Oct 26, 2023
CVSS 7.1
EPSS 0.00
CVE-2023-3253 MEDIUM
Nessus < 10.6.0 - Authenticated User Enumeration via Improper Authorization
Aug 29, 2023
CVSS 4.3
EPSS 0.00
CVE-2023-3252 MEDIUM
Nessus < 10.6.0 - Authenticated Arbitrary File Write via Logging Variables
Aug 29, 2023
CVSS 6.8
EPSS 0.00
CVE-2023-3251 MEDIUM
Nessus < 10.6.0 - Authenticated SMTP Credential Exposure
Aug 29, 2023
CVSS 4.1
EPSS 0.00
CVE-2023-2005 MEDIUM
Tenable Nessus, SecurityCenter, Tenable.io - Uncontrolled Search Path Element
Jun 26, 2023
CVSS 6.3
EPSS 0.00
CVE-2023-0524 HIGH
Nessus - Privilege Escalation via Plugin Environment Variable Manipulation
Feb 01, 2023
CVSS 8.8
EPSS 0.00
CVE-2023-24495 MEDIUM
Tenable.sc 5.23.1 - Authenticated Server-Side Request Forgery
Jan 26, 2023
CVSS 6.5
EPSS 0.00
CVE-2023-24494 MEDIUM
Tenable.sc < 5.23.1 - Authenticated Stored Cross-Site Scripting
Jan 26, 2023
CVSS 5.4
EPSS 0.00
CVE-2023-24493 MEDIUM
Tenable.sc < 5.23.1 - Authenticated Formula Injection via Report Export
Jan 26, 2023
CVSS 5.7
EPSS 0.00
CVE-2023-0476 MEDIUM
Tenable.sc < 5.23.1 - Authenticated LDAP Injection
Jan 26, 2023
CVSS 6.5
EPSS 0.01