CVE-2017-8051

CRITICAL

Tenable Appliance 3.5-4.4.0 - OS Command Injection via tns_appliance_session_user Parameter

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2017-8051. PoCs published by agix.

AI-analyzed exploit summary This exploit leverages an unauthenticated remote code execution vulnerability in Tenable Appliance versions prior to 4.5. It uses a crafted curl request to inject a bash reverse shell payload via the 'simpleupload.py' endpoint, resulting in a root shell.

Description

Tenable Appliance 3.5 - 4.4.0, and possibly prior versions, contains a flaw in the simpleupload.py script in the Web UI. Through the manipulation of the tns_appliance_session_user parameter, a remote attacker can inject arbitrary commands.

Exploits (1)

exploitdb WORKING POC
by agix · bashremotelinux
https://www.exploit-db.com/exploits/41892

This exploit leverages an unauthenticated remote code execution vulnerability in Tenable Appliance versions prior to 4.5. It uses a crafted curl request to inject a bash reverse shell payload via the 'simpleupload.py' endpoint, resulting in a root shell.

Classification
Working Poc 95%
Attack Type
Rce
Complexity
Trivial
Reliability
Reliable
Target: Tenable Appliance < 4.5
No auth needed
Prerequisites: Network access to the target · Target running vulnerable Tenable Appliance version
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (3)

Core 3
Core References
Permissions Required x_refsource_misc
https://vulndb.cyberriskanalytics.com/153135
Patch, Vendor Advisory x_refsource_confirm
http://www.tenable.com/security/tns-2017-07
Exploit, Third Party Advisory, VDB Entry exploit x_refsource_exploit-db
https://www.exploit-db.com/exploits/41892/

Scores

CVSS v3 9.8
EPSS 0.1648
EPSS Percentile 96.6%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-78
Status published
Products (11)
tenable/appliance 3.4.0
tenable/appliance 3.5.0
tenable/appliance 3.5.1
tenable/appliance 3.10.0
tenable/appliance 3.10.1
tenable/appliance 4.0.0
tenable/appliance 4.1.0
tenable/appliance 4.2.0
tenable/appliance 4.3.0
tenable/appliance 4.3.1
... and 1 more
Published Apr 21, 2017
Tracked Since Feb 18, 2026