Stored XSS in Tenable.Sc before 5.14.0 could allow an authenticated remote attacker to craft a request to execute arbitrary script code in a user's browser session. Updated input validation techniques have been implemented to correct this issue.
Advisories
Source ID Title
EUVD EUVD EUVD-2020-26896 Stored XSS in Tenable.Sc before 5.14.0 could allow an authenticated remote attacker to craft a request to execute arbitrary script code in a user's browser session. Updated input validation techniques have been implemented to correct this issue.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: tenable

Published:

Updated: 2024-08-04T08:39:25.524Z

Reserved: 2020-01-06T00:00:00

Link: CVE-2020-5737

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2020-04-17T19:15:15.170

Modified: 2024-11-21T05:34:30.617

Link: CVE-2020-5737

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.