CVE-2020-5737 PUBLISHED CVSS 5.400000095367432 MEDIUM

Stored XSS in Tenable.Sc before 5.14.0 could allow an authenticated remote attacker to craft a request to execute arbitrary script code in a user's browser session. Updated input validation techniques have been implemented to correct this issue.

EPSS 0.23% · 45.3th percentile

Risk Scores

CVSS v3.1
5.400000095367432
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
EPSS Score
0.23%
45.3th percentile

Affected Products

VendorProductVersions
tenabletenable.sc5.14.0, 5.14.1
n/aTenable.Sc< 5.14.0

Timeline

References

Open in Interactive Console →