Description
Vulnerability in Tenable Tenable.Io, Tenable Nessus, Tenable Security Center.This issue affects Tenable.Io: before Plugin Feed ID #202306261202 ; Nessus: before Plugin Feed ID #202306261202 ; Security Center: before Plugin Feed ID #202306261202 .
This vulnerability could allow a malicious actor with sufficient permissions on a scan target to place a binary in a specific filesystem location, and abuse the impacted plugin in order to escalate privileges.
This vulnerability could allow a malicious actor with sufficient permissions on a scan target to place a binary in a specific filesystem location, and abuse the impacted plugin in order to escalate privileges.
No analysis available yet.
Remediation
Vendor Solution
The updates have been distributed via the Tenable plugin feed in feed serial numbers equal to or greater than #202306261202.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-33535 | Vulnerability in Tenable Tenable.Io, Tenable Nessus, Tenable Security Center.This issue affects Tenable.Io: before Plugin Feed ID #202306261202 ; Nessus: before Plugin Feed ID #202306261202 ; Security Center: before Plugin Feed ID #202306261202 . This vulnerability could allow a malicious actor with sufficient permissions on a scan target to place a binary in a specific filesystem location, and abuse the impacted plugin in order to escalate privileges. |
References
| Link | Providers |
|---|---|
| https://www.tenable.com/security/tns-2023-21 |
|
History
Tue, 03 Dec 2024 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-427 | |
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: tenable
Published:
Updated: 2024-12-03T18:44:10.535Z
Reserved: 2023-04-12T15:39:04.752Z
Link: CVE-2023-2005
Updated: 2024-08-02T06:05:27.147Z
Status : Modified
Published: 2023-06-26T18:15:09.580
Modified: 2024-12-03T19:15:06.390
Link: CVE-2023-2005
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD