CVE-2024-5759

MEDIUM

Tenable Security Center < 6.3.0 - Authenticated Privilege Escalation

Title source: llm
STIX 2.1

Description

An improper privilege management vulnerability exists in Tenable Security Center where an authenticated, remote attacker could view unauthorized objects and launch scans without having the required privileges

References (1)

Core 1
Core References

Scores

CVSS v3 5.4
EPSS 0.0064
EPSS Percentile 70.8%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:L

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-269
Status published
Products (1)
tenable/security_center < 6.3.0
Published Jun 12, 2024
Tracked Since Feb 18, 2026