CVE-2023-2005

medium Tenable
CVSS v3 Base Score
6.3
CVSS:3.1/AV:L/AC:H/PR:H/UI:R/S:U/C:H/I:H/A:H
EPSS Score
0.4%
Exploitation probability in 30 days
Top 69% most likely to be exploited
Attack Characteristics
Attack Vector
Local
Attack Complexity
High
Privileges Required
High
User Interaction
Required
Confidentiality
High
Integrity
High
Availability
High
Published: June 26, 2023 (1169 days ago)
Last Modified: August 17, 2026
Vendor: Tenable
Source: NVD

Description

Vulnerability in Tenable Tenable.Io, Tenable Nessus, Tenable Security Center.This issue affects Tenable.Io: before Plugin Feed ID #202306261202 ; Nessus: before Plugin Feed ID #202306261202 ; Security Center: before Plugin Feed ID #202306261202 . This vulnerability could allow a malicious actor with sufficient permissions on a scan target to place a binary in a specific filesystem location, and abuse the impacted plugin in order to escalate privileges.

CWE

NVD-CWE-noinfo

Affected Products

tenable nessustenable security centertenable tenable.io

References