VDB
CVE-2024-1471
CVE-2024-1471
PUBLISHED
CVSS 5.900000095367432 MEDIUM
An HTML injection vulnerability exists where an authenticated, remote attacker with administrator privileges on the Security Center application could modify Repository parameters, which could lead to HTML redirection attacks.
EPSS 0.41% · 32.5th percentile
Risk Scores
CVSS 3.1
5.900000095367432
CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:L
EPSS Score
0.41%
32.5th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| tenable | security_center | 0, 0 |
| Tenable | Security Center | 0, 0 |
Timeline
- Feb 14, 2024 CVE Published
- Feb 14, 2024 PoC Published
- Feb 15, 2024 EPSS Score
- Mar 13, 2024 EPSS Score
- Apr 10, 2024 EPSS Score
- May 7, 2024 EPSS Score
- Jun 3, 2024 EPSS Score
- Jul 2, 2024 EPSS Score
- Jul 29, 2024 EPSS Score
- Aug 29, 2024 EPSS Score
- Sep 25, 2024 EPSS Score
- Oct 4, 2024 Coalition ESS Score