Vulnerability index

Browse CVEs

14 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Security Center HIGH 8.8
CVE-2026-64881

The audit file upload handler does not sanitize filenames, allowing shell metacharacters to flow into system command execution. This input validation…

No fix yet
Fix from $1,950 2026-07-21
Security Center CRITICAL 9.9
CVE-2026-64878

Unvalidated input in asset filter parameters allows shell metacharacters to escape command argument handling, resulting in remote code execution as a…

No fix yet
Fix from $2,300 2026-07-21
Security Center CRITICAL 9.9
CVE-2026-64879

A filename supplied during file upload is not properly sanitized before being used in system command execution, allowing an attacker to inject shell …

No fix yet
Fix from $2,300 2026-07-21
Security Center HIGH 7.1
CVE-2026-64880

Unsanitized user-supplied input in report filtering parameters is concatenated directly into SQL queries without proper escaping or parameterized que…

No fix yet
Fix from $1,950 2026-07-21
Security Center HIGH 8.4
CVE-2026-64877

An authenticated non-admin user can exploit a SQL injection flaw in the ticketing REST API to access sensitive data stored in the appliance database.

Mitigation only
Fix from $1,950 2026-07-21
Nessus HIGH 8.8
CVE-2023-2005

Vulnerability in Tenable Tenable.Io, Tenable Nessus, Tenable Security Center.This issue affects Tenable.Io: before Plugin Feed ID #202306261202 ; Nes…

Mitigation only
Fix from $1,950 2023-06-26
Nessus HIGH 8.8
CVE-2023-0524

As part of our Security Development Lifecycle, a potential privilege escalation issue was identified internally. This could allow a malicious actor w…

Mitigation only
Fix from $1,950 2023-02-01
Nessus MEDIUM 6.5
CVE-2022-28291

Insufficiently Protected Credentials: An authenticated user with debug privileges can retrieve stored Nessus policy credentials from the “nessusd” pr…

No fix yet
Fix from $1,600 2022-10-17
Nessus Network Monitor HIGH 7.8
CVE-2020-5794

A vulnerability in Nessus Network Monitor versions 5.11.0, 5.11.1, and 5.12.0 for Windows could allow an authenticated local attacker to execute arbi…

Mitigation only
Fix from $1,950 2020-11-06
Security Center HIGH 8.8
CVE-2017-11508

SecurityCenter versions 5.5.0, 5.5.1 and 5.5.2 contain a SQL Injection vulnerability that could be exploited by an authenticated user with sufficient…

Mitigation only
Fix from $1,950 2017-11-02
Nessus HIGH 7.4
CVE-2017-11506

When linking a Nessus scanner or agent to Tenable.io or other manager, Nessus 6.x before 6.11 does not verify the manager's TLS certificate when maki…

Mitigation only
Fix from $1,950 2017-08-09
Nessus HIGH 7.8
CVE-2017-7850

Nessus 6.10.x before 6.10.5 was found to be vulnerable to a local privilege escalation issue due to insecure permissions when running in Agent Mode.

Mitigation only
Fix from $1,950 2017-04-19
Nessus MEDIUM 5.5
CVE-2017-7849

Nessus 6.10.x before 6.10.5 was found to be vulnerable to a local denial of service condition due to insecure permissions when running in Agent Mode.

Mitigation only
Fix from $1,600 2017-04-19
Nessus HIGH 7.8
CVE-2017-7199

Nessus 6.6.2 - 6.10.3 contains a flaw related to insecure permissions that may allow a local attacker to escalate privileges when the software is run…

Mitigation only
Fix from $1,950 2017-03-23