Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Tenable — Vulnerabilities & Security Advisories 80

Browse all 80 CVE security advisories affecting Tenable. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Tenable operates primarily as a cybersecurity platform specializing in continuous vulnerability management and exposure assessment for enterprise environments. Its core utility lies in scanning networks and cloud infrastructure to identify misconfigurations and unpatched software, enabling organizations to prioritize remediation efforts effectively. Historically, vulnerabilities within the Tenable ecosystem have predominantly involved remote code execution (RCE) and cross-site scripting (XSS), often stemming from web interface components or API endpoints. These flaws typically allowed attackers to bypass authentication or execute arbitrary commands on affected systems. While the company has maintained a generally robust security posture, past incidents have highlighted risks associated with third-party dependencies and configuration errors in its cloud-based services. The current record of 73 CVEs reflects an ongoing effort to address legacy code issues and secure expanding product suites. Users are advised to maintain strict access controls and apply patches promptly to mitigate potential exploitation vectors.

CVE ID Title CVSS Severity Published
CVE-2024-3291 Privilege Escalation — Nessus Agent CWE-281 7.8 High 2024-05-17
CVE-2024-3290 Race Condition — Nessus CWE-367 8.2 High 2024-05-17
CVE-2024-3289 Tenable Network Security Nessus 安全漏洞 — Nessus CWE-281 7.8 High 2024-05-17
CVE-2024-2390 Local Privilege Escalation — Nessus Agent CWE-269 7.8 High 2024-03-18
CVE-2024-1683 DLL Injection in Tenable Identity Exposure Secure Relay — Tenable Identity Exposure Secure Relay CWE-78 7.3 High 2024-02-23
CVE-2024-1471 HTML Injection Vulnerability — Security Center CWE-20 5.9 Medium 2024-02-14
CVE-2024-1367 Command Injection Vulnerability in Tenable Security Center — Security Center CWE-78 7.2 High 2024-02-14
CVE-2024-0971 Nessus SQL注入漏洞 — Nessus CWE-89 6.5 Medium 2024-02-06
CVE-2024-0955 Stored XSS vulnerability — Nessus CWE-20 4.8 Medium 2024-02-06
CVE-2023-6178 Nessus 安全漏洞 — Nessus Agent 6.8 Medium 2023-11-20
CVE-2023-6062 Arbitrary File Write — Nessus 6.8 Medium 2023-11-20
CVE-2023-5847 Tenable Network Security Nessus 安全漏洞 — Nessus CWE-269 6.7 Medium 2023-11-01
CVE-2023-5624 Blind SQL Injection — Nessus Network Monitor CWE-20 7.2 High 2023-10-26
CVE-2023-5623 Privilege Escalation — Nessus Network Monitor 7.0 High 2023-10-26
CVE-2023-5622 Privilege Escalation — Nessus Network Monitor 7.1 High 2023-10-26
CVE-2023-3253 Improper authorization in Nessus — Nessus 4.3 Medium 2023-08-29
CVE-2023-3251 Pass-back vulnerability in Nessus — Nessus CWE-522 4.1 Medium 2023-08-29
CVE-2023-2005 Tenable Plugin Feed ID #202306261202 Fixes Privilege Escalation Vulnerability — Tenable.io 6.3 Medium 2023-06-26
CVE-2021-21371 Execution of untrusted code through config file — integration-jira-cloud CWE-502 5.0 Medium 2021-03-10
CVE-2020-5756 Grandstream GWN7000 操作系统命令注入漏洞 — Grandstream GWN7000 CWE-489 8.8 - 2020-07-17
CVE-2019-3962 Tenable Network Security Nessus 跨站脚本漏洞 — Nessus 3.3 - 2019-07-01
CVE-2019-3961 Tenable Network Security Nessus 跨站脚本漏洞 — Tenable Nessus 6.1 - 2019-06-25
CVE-2019-3917 Nokia Alcatel Lucent I-240W-Q GPON ONT 访问控制错误漏洞 — Alcatel Lucent I-240W-Q GPON ONT CWE-306 7.5 - 2019-03-05
CVE-2019-3918 Nokia Alcatel Lucent I-240W-Q GPON ONT 信任管理问题漏洞 — Alcatel Lucent I-240W-Q GPON ONT CWE-798 9.8 - 2019-03-05
CVE-2019-3919 Nokia Alcatel Lucent I-240W-Q GPON ONT 命令注入漏洞 — Alcatel Lucent I-240W-Q GPON ONT CWE-78 8.8 - 2019-03-05
CVE-2019-3920 Nokia Alcatel Lucent I-240W-Q GPON ONT 命令注入漏洞 — Alcatel Lucent I-240W-Q GPON ONT CWE-78 8.8 - 2019-03-05
CVE-2019-3922 Nokia Alcatel Lucent I-240W-Q GPON ONT 缓冲区错误漏洞 — Alcatel Lucent I-240W-Q GPON ONT CWE-121 9.8 - 2019-03-05
CVE-2019-3921 Nokia Alcatel Lucent I-240W-Q GPON ONT 缓冲区错误漏洞 — Alcatel Lucent I-240W-Q GPON ONT CWE-121 8.8 - 2019-03-05
CVE-2019-3924 MikroTik RouterOS 安全漏洞 — MikroTik RouterOS CWE-441 9.1 - 2019-02-20
CVE-2019-3923 Tenable Network Security Nessus 跨站脚本漏洞 — Tenable Nessus 5.4 - 2019-02-12

This page lists every published CVE security advisory associated with Tenable. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.