Description
Vulnerability in Tenable Tenable.Io, Tenable Nessus, Tenable Security Center.This issue affects Tenable.Io: before Plugin Feed ID #202306261202 ; Nessus: before Plugin Feed ID #202306261202 ; Security Center: before Plugin Feed ID #202306261202 .

This vulnerability could allow a malicious actor with sufficient permissions on a scan target to place a binary in a specific filesystem location, and abuse the impacted plugin in order to escalate privileges.


Published: 2023-06-26
Score: 6.3 Medium
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

Vendor Solution

The updates have been distributed via the Tenable plugin feed in feed serial numbers equal to or greater than #202306261202.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2023-33535 Vulnerability in Tenable Tenable.Io, Tenable Nessus, Tenable Security Center.This issue affects Tenable.Io: before Plugin Feed ID #202306261202 ; Nessus: before Plugin Feed ID #202306261202 ; Security Center: before Plugin Feed ID #202306261202 . This vulnerability could allow a malicious actor with sufficient permissions on a scan target to place a binary in a specific filesystem location, and abuse the impacted plugin in order to escalate privileges.
History

Tue, 03 Dec 2024 19:15:00 +0000

Type Values Removed Values Added
Weaknesses CWE-427
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Subscriptions

Tenable Nessus Securitycenter Tenable.io
cve-icon MITRE

Status: PUBLISHED

Assigner: tenable

Published:

Updated: 2024-12-03T18:44:10.535Z

Reserved: 2023-04-12T15:39:04.752Z

Link: CVE-2023-2005

cve-icon Vulnrichment

Updated: 2024-08-02T06:05:27.147Z

cve-icon NVD

Status : Modified

Published: 2023-06-26T18:15:09.580

Modified: 2024-12-03T19:15:06.390

Link: CVE-2023-2005

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses