Description
Tenable Appliance versions 4.6.1 and earlier have been found to contain a single XSS vulnerability. Utilizing a specially crafted request, an authenticated attacker could potentially execute arbitrary JavaScript code by manipulating certain URL parameters related to offline plugins.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2018-11780 | Tenable Appliance versions 4.6.1 and earlier have been found to contain a single XSS vulnerability. Utilizing a specially crafted request, an authenticated attacker could potentially execute arbitrary JavaScript code by manipulating certain URL parameters related to offline plugins. |
References
| Link | Providers |
|---|---|
| https://www.tenable.com/security/tns-2018-02 |
|
History
No history.
Status: PUBLISHED
Assigner: tenable
Published:
Updated: 2024-09-17T03:23:47.452Z
Reserved: 2017-12-05T00:00:00.000Z
Link: CVE-2018-1142
No data.
Status : Modified
Published: 2018-03-28T13:29:00.277
Modified: 2024-11-21T03:59:16.553
Link: CVE-2018-1142
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD