VDB
CVE-2021-20106
CVE-2021-20106
PUBLISHED
CVSS 6.5 MEDIUM
Nessus Agent versions 8.2.5 and earlier were found to contain a privilege escalation vulnerability which could allow a Nessus administrator user to upload a specially crafted file that could lead to gaining administrator privileges on the Nessus host.
EPSS 0.30% · 53.7th percentile
Risk Scores
CVSS 3.1
6.5
CVSS:3.1/AV:L/AC:L/PR:H/UI:R/S:U/C:H/I:H/A:H
EPSS Score
0.30%
53.7th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| n/a | Nessus Agent | * |
| Tenable | Nessus Agent | |
| tenable | nessus | 0 |
Timeline
- Jul 21, 2021 CVE Published
- Jul 22, 2021 EPSS Score
- Sep 19, 2021 EPSS Score
- Nov 18, 2021 EPSS Score
- Jan 6, 2022 EPSS Score
- Jan 16, 2022 EPSS Score
- Apr 1, 2022 EPSS Score
- May 15, 2022 EPSS Score
- Jul 13, 2022 EPSS Score
- Sep 12, 2022 EPSS Score
- Nov 10, 2022 EPSS Score
- Jan 8, 2023 EPSS Score