Tenable Nessus vulnerabilities
70 known vulnerabilities affecting tenable/nessus.
Total CVEs
70
CISA KEV
0
Public exploits
1
Exploited in wild
1
Severity breakdown
CRITICAL4HIGH28MEDIUM36LOW2
Vulnerabilities
Page 3 of 4
CVE-2025-36630P4HIGHCVSS 7.1fixed in 10.8.52025-07-02
CVE-2025-36630 [HIGH] CWE-269 CVE-2025-36630: In Tenable Nessus versions prior to 10.8.5 on a Windows host, it was found that a non-administrative
In Tenable Nessus versions prior to 10.8.5 on a Windows host, it was found that a non-administrative user could overwrite arbitrary local system files with log content at SYSTEM privilege.
nvd
CVE-2022-3499P4MEDIUMCVSS 6.5fixed in 10.4.02022-10-31
CVE-2022-3499 [MEDIUM] CWE-532 CVE-2022-3499: An authenticated attacker could utilize the identical agent and cluster node linking keys to potenti
An authenticated attacker could utilize the identical agent and cluster node linking keys to potentially allow for a scenario where unauthorized disclosure of agent logs and data is present.
nvd
CVE-2017-11506P4HIGHCVSS 7.4v6.0.0v6.0.1+46 more2017-08-09
CVE-2017-11506 [HIGH] CWE-295 CVE-2017-11506: When linking a Nessus scanner or agent to Tenable.io or other manager, Nessus 6.x before 6.11 does n
When linking a Nessus scanner or agent to Tenable.io or other manager, Nessus 6.x before 6.11 does not verify the manager's TLS certificate when making the initial outgoing connection. This could allow man-in-the-middle attacks.
nvd
CVE-2019-3982P4MEDIUMCVSS 6.5≤ 8.6.02019-10-23
CVE-2019-3982 [MEDIUM] CWE-20 CVE-2019-3982: Nessus versions 8.6.0 and earlier were found to contain a Denial of Service vulnerability due to imp
Nessus versions 8.6.0 and earlier were found to contain a Denial of Service vulnerability due to improper validation of specific imported scan types. An authenticated, remote attacker could potentially exploit this vulnerability to cause a Nessus scanner to become temporarily unresponsive.
nvd
CVE-2020-5774P4HIGHCVSS 7.1≤ 8.11.02020-08-21
CVE-2020-5774 [HIGH] CWE-613 CVE-2020-5774: Nessus versions 8.11.0 and earlier were found to maintain sessions longer than the permitted period
Nessus versions 8.11.0 and earlier were found to maintain sessions longer than the permitted period in certain scenarios. The lack of proper session expiration could allow attackers with local access to login into an existing browser session.
nvd
CVE-2021-20079P4MEDIUMCVSS 6.7≤ 8.13.2vNessus 8.13.2 and earlier2021-06-29
CVE-2021-20079 [MEDIUM] CVE-2021-20079: Nessus versions 8.13.2 and earlier were found to contain a privilege escalation vulnerability which
Nessus versions 8.13.2 and earlier were found to contain a privilege escalation vulnerability which could allow a Nessus administrator user to upload a specially crafted file that could lead to gaining administrator privileges on the Nessus host.
nvd
CVE-2018-1141P4HIGHCVSS 7.0fixed in 7.0.3vAll versions prior to 7.0.32018-03-20
CVE-2018-1141 [HIGH] CWE-732 CVE-2018-1141: When installing Nessus to a directory outside of the default location, Nessus versions prior to 7.0.
When installing Nessus to a directory outside of the default location, Nessus versions prior to 7.0.3 did not enforce secure permissions for sub-directories. This could allow for local privilege escalation if users had not secured the directories in the installation location.
nvd
CVE-2021-20106P4MEDIUMCVSS 6.5≤ 8.2.52021-07-21
CVE-2021-20106 [MEDIUM] CVE-2021-20106: Nessus Agent versions 8.2.5 and earlier were found to contain a privilege escalation vulnerability w
Nessus Agent versions 8.2.5 and earlier were found to contain a privilege escalation vulnerability which could allow a Nessus administrator user to upload a specially crafted file that could lead to gaining administrator privileges on the Nessus host.
nvd
CVE-2021-20135P4MEDIUMCVSS 6.7≤ 8.15.2vNessus 8.15.2 and earlier2021-11-03
CVE-2021-20135 [MEDIUM] CVE-2021-20135: Nessus versions 8.15.2 and earlier were found to contain a local privilege escalation vulnerability
Nessus versions 8.15.2 and earlier were found to contain a local privilege escalation vulnerability which could allow an authenticated, local administrator to run specific executables on the Nessus Agent host. Tenable has included a fix for this issue in Nessus 10.0.0. The installation files can be obtained from the Tenable Downloads Portal (https://www.tena
nvd
CVE-2019-3961P4MEDIUMCVSS 6.1≤ 8.4.02019-06-25
CVE-2019-3961 [MEDIUM] CWE-79 CVE-2019-3961: Nessus versions 8.4.0 and earlier were found to contain a reflected XSS vulnerability due to imprope
Nessus versions 8.4.0 and earlier were found to contain a reflected XSS vulnerability due to improper validation of user-supplied input. An unauthenticated, remote attacker could potentially exploit this vulnerability via a specially crafted request to execute arbitrary script code in a users browser session.
nvd
CVE-2021-20100P4MEDIUMCVSS 6.7fixed in 8.2.52021-06-28
CVE-2021-20100 [MEDIUM] CVE-2021-20100: Nessus Agent 8.2.4 and earlier for Windows were found to contain multiple local privilege escalation
Nessus Agent 8.2.4 and earlier for Windows were found to contain multiple local privilege escalation vulnerabilities which could allow an authenticated, local administrator to run specific Windows executables as the Nessus host. This is different than CVE-2021-20099.
nvd
CVE-2021-20099P4MEDIUMCVSS 6.7≤ 8.2.42021-06-28
CVE-2021-20099 [MEDIUM] CVE-2021-20099: Nessus Agent 8.2.4 and earlier for Windows were found to contain multiple local privilege escalation
Nessus Agent 8.2.4 and earlier for Windows were found to contain multiple local privilege escalation vulnerabilities which could allow an authenticated, local administrator to run specific Windows executables as the Nessus host. This is different than CVE-2021-20100.
nvd
CVE-2019-3923P4MEDIUMCVSS 5.4≤ 8.2.12019-02-12
CVE-2019-3923 [MEDIUM] CWE-79 CVE-2019-3923: Nessus versions 8.2.1 and earlier were found to contain a stored XSS vulnerability due to improper v
Nessus versions 8.2.1 and earlier were found to contain a stored XSS vulnerability due to improper validation of user-supplied input. An authenticated, remote attacker could potentially exploit this vulnerability via a specially crafted request to execute arbitrary script code in a user's browser session. Tenable has released Nessus 8.2.2 to address th
nvd
CVE-2018-1147P4MEDIUMCVSS 5.4fixed in 7.1.02018-05-18
CVE-2018-1147 [MEDIUM] CWE-79 CVE-2018-1147: In Nessus before 7.1.0, a XSS vulnerability exists due to improper input validation. A remote authen
In Nessus before 7.1.0, a XSS vulnerability exists due to improper input validation. A remote authenticated attacker could create and upload a .nessus file, which may be viewed by an administrator allowing for the execution of arbitrary script code in a user's browser session. In other scenarios, XSS could also occur by altering variables from the Adva
nvd
CVE-2023-3251P4MEDIUMCVSS 4.9fixed in 10.6.02023-08-29
CVE-2023-3251 [MEDIUM] CWE-522 CVE-2023-3251: A pass-back vulnerability exists where an authenticated, remote attacker with administrator privile
A pass-back vulnerability exists where an authenticated, remote attacker with administrator privileges could uncover stored SMTP credentials within the Nessus application.This issue affects Nessus: before 10.6.0.
nvd
CVE-2020-5765P4MEDIUMCVSS 5.4≤ 8.10.02020-07-15
CVE-2020-5765 [MEDIUM] CWE-79 CVE-2020-5765: Nessus 8.10.0 and earlier were found to contain a Stored XSS vulnerability due to improper validatio
Nessus 8.10.0 and earlier were found to contain a Stored XSS vulnerability due to improper validation of input during scan configuration. An authenticated, remote attacker could potentially exploit this vulnerability to execute arbitrary code in a user's session. Tenable has implemented additional input validation mechanisms to correct this issue in Ne
nvd
CVE-2016-9260P4MEDIUMCVSS 5.4≤ 6.8.12017-01-31
CVE-2016-9260 [MEDIUM] CWE-79 CVE-2016-9260: Cross-site scripting (XSS) vulnerability in Tenable Nessus before 6.9 allows remote authenticated us
Cross-site scripting (XSS) vulnerability in Tenable Nessus before 6.9 allows remote authenticated users to inject arbitrary web script or HTML via vectors related to handling of .nessus files.
nvd
CVE-2017-5179P4MEDIUMCVSS 5.4≤ 6.9.22017-01-05
CVE-2017-5179 [MEDIUM] CWE-79 CVE-2017-5179: Cross-site scripting (XSS) vulnerability in Tenable Nessus before 6.9.3 allows remote authenticated
Cross-site scripting (XSS) vulnerability in Tenable Nessus before 6.9.3 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.
nvd
CVE-2016-9259P4MEDIUMCVSS 5.4v6.8v6.8.1+2 more2017-02-28
CVE-2016-9259 [MEDIUM] CWE-79 CVE-2016-9259: Cross-site scripting (XSS) vulnerability in Tenable Nessus before 6.9.1 allows remote authenticated
Cross-site scripting (XSS) vulnerability in Tenable Nessus before 6.9.1 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.
nvd
CVE-2017-2122P4MEDIUMCVSS 5.4v6.8.0v6.8.1+3 more2017-05-12
CVE-2017-2122 [MEDIUM] CWE-79 CVE-2017-2122: Cross-site scripting vulnerability in Nessus versions 6.8.0, 6.8.1, 6.9.0, 6.9.1 and 6.9.2 allows re
Cross-site scripting vulnerability in Nessus versions 6.8.0, 6.8.1, 6.9.0, 6.9.1 and 6.9.2 allows remote authenticated attackers to inject arbitrary web script or HTML via unspecified vectors.
nvd