Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The /server/properties resource in Tenable Web UI before 2.3.5 for Nessus 5.2.3 through 5.2.7 allows remote attackers to obtain sensitive information via the token parameter.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Tenable Network Security Nessus 信息泄露漏洞
Vulnerability Description
Tenable Network Security Nessus是美国Tenable Network Security公司的一款开源的漏洞扫描器。Tenable Web UI是其中的一个Web UI框架。 Nessus 5.2.3至5.2.7版本的Tenable Network Security Tenable Web UI 2.3.5之前版本中的‘/server/properties’资源中存在安全漏洞。远程攻击者可借助‘token’参数利用该漏洞获取敏感信息。
CVSS Information
N/A
Vulnerability Type
N/A