PT-2024-17470 · Tenable · Tenable Security Center

Published

2024-12-09

·

Updated

2024-12-10

·

CVE-2024-12174

CVSS v3.1

2.7

Low

VectorAV:N/AC:L/PR:H/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions Tenable Security Center (affected versions not specified)
Description An Improper Certificate Validation issue exists, allowing an authenticated, privileged attacker to intercept email messages sent from Security Center via a rogue SMTP server.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Improper Certificate Validation

Weakness Enumeration

Related Identifiers

CVE-2024-12174

Affected Products

Tenable Security Center