Tenable

Nessus

70 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.38%
  • Published 10.01.2022 14:12:56
  • Last modified 05.05.2025 17:17:52

build_model in xmlparse.c in Expat (aka libexpat) before 2.4.3 has an integer overflow.

  • EPSS 1.17%
  • Published 10.01.2022 14:12:56
  • Last modified 05.05.2025 17:17:52

addBinding in xmlparse.c in Expat (aka libexpat) before 2.4.3 has an integer overflow.

Exploit
  • EPSS 4.09%
  • Published 06.01.2022 04:15:07
  • Last modified 05.05.2025 17:17:28

In doProlog in xmlparse.c in Expat (aka libexpat) before 2.4.3, an integer overflow exists for m_groupSize.

Exploit
  • EPSS 0.37%
  • Published 01.01.2022 19:15:08
  • Last modified 05.05.2025 17:17:28

In Expat (aka libexpat) before 2.4.3, a left shift by 29 (or more) places in the storeAtts function in xmlparse.c can lead to realloc misbehavior (e.g., allocating too few bytes, or only freeing memory).

  • EPSS 0.13%
  • Published 03.11.2021 00:15:07
  • Last modified 21.11.2024 05:45:59

Nessus versions 8.15.2 and earlier were found to contain a local privilege escalation vulnerability which could allow an authenticated, local administrator to run specific executables on the Nessus Agent host. Tenable has included a fix for this issu...

  • EPSS 0.31%
  • Published 21.07.2021 15:15:13
  • Last modified 21.11.2024 05:45:56

Nessus Agent versions 8.2.5 and earlier were found to contain a privilege escalation vulnerability which could allow a Nessus administrator user to upload a specially crafted file that could lead to gaining administrator privileges on the Nessus host...

  • EPSS 0.15%
  • Published 29.06.2021 19:15:08
  • Last modified 21.11.2024 05:45:53

Nessus versions 8.13.2 and earlier were found to contain a privilege escalation vulnerability which could allow a Nessus administrator user to upload a specially crafted file that could lead to gaining administrator privileges on the Nessus host.

  • EPSS 0.06%
  • Published 28.06.2021 11:15:07
  • Last modified 21.11.2024 05:45:55

Nessus Agent 8.2.4 and earlier for Windows were found to contain multiple local privilege escalation vulnerabilities which could allow an authenticated, local administrator to run specific Windows executables as the Nessus host. This is different tha...

  • EPSS 0.06%
  • Published 28.06.2021 11:15:07
  • Last modified 21.11.2024 05:45:55

Nessus Agent 8.2.4 and earlier for Windows were found to contain multiple local privilege escalation vulnerabilities which could allow an authenticated, local administrator to run specific Windows executables as the Nessus host. This is different tha...

  • EPSS 0.69%
  • Published 25.03.2021 15:15:13
  • Last modified 21.11.2024 06:21:33

The X509_V_FLAG_X509_STRICT flag enables additional security checks of the certificates present in a certificate chain. It is not set by default. Starting from OpenSSL version 1.1.1h a check to disallow certificates in the chain that have explicitly ...