PT-2021-13792 · Tenable · Nessus

Published

2021-11-02

·

Updated

2022-07-12

·

CVE-2021-20135

CVSS v3.1

6.7

Medium

VectorAV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions: Nessus versions 8.15.2 and earlier
Description: A local privilege escalation issue was found in Nessus, which could allow an authenticated, local administrator to run specific executables on the Nessus Agent host.
Recommendations: For Nessus versions 8.15.2 and earlier, update to Nessus 10.0.0 to resolve the issue. The installation files can be obtained from the Tenable Downloads Portal.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2021-20135

Affected Products

Nessus