A vulnerability was reported where through modifying the scan variables, an authenticated user in Tenable products, that has Scan Policy Configuration roles, could manipulate audit policy variables to execute arbitrary commands on credentialed scan targets.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://www.tenable.com/security/tns-2023-14 |
History
No history.
MITRE
Status: PUBLISHED
Assigner: tenable
Published: 2023-03-15T00:00:00
Updated: 2024-08-03T01:34:50.145Z
Reserved: 2022-12-06T00:00:00
Link: CVE-2022-4313
Vulnrichment
No data.
NVD
Status : Modified
Published: 2023-03-15T23:15:09.337
Modified: 2024-11-21T07:35:00.820
Link: CVE-2022-4313
Redhat
No data.