CVE-2021-20077 PUBLISHED CVSS 7.199999809265137 HIGH

Nessus Agent versions 7.2.0 through 8.2.2 were found to inadvertently capture the IAM role security token on the local host during initial linking of the Nessus Agent when installed on an Amazon EC2 instance. This could allow a privileged attacker to obtain the token.

EPSS 0.04% · 12.8th percentile

Risk Scores

CVSS v2.0
7.199999809265137
EPSS Score
0.04%
12.8th percentile

Affected Products

VendorProductVersions
n/aTenable Nessus Agent7.2.0 through 8.2.2
TenableNessus
tenablenessus_agent7.2.0

Timeline

References

Open in Interactive Console →