Known vulnerabilities in Tenable Nessus 8.5.1
Vendor:
Tenable Network Security
Software:
Tenable Nessus
Version:
8.5.1
Software CPE:
cpe:2.3:a:tenable_network_security:tenable_nessus:*:*:*:*:*:*:*:*
Website:
https://www.tenable.com/
Total vulnerabilities:
39
Public exploits:
5
Known exploited (KEV):
0
Highest CVSSv4 Score:
9.3
Vulnerabilities by Severity
10.12.1
10.12.0
10.11.3
10.10.3
10.11.2
10.10.2
10.8.6
10.10.1
10.10.0
10.11.1
10.9.6
10.11.0
10.9.5
10.9.4
10.9.3
10.9.2
10.9.1
10.9.0
10.8.5
10.8.4
10.8.3
10.8.2
10.8.1
10.8.0
10.7.6
10.7.5
10.7.4
10.7.3
10.7.2
10.7.1
10.7.0
10.6.4
10.6.3
10.5.7
10.6.2
10.6.1
10.5.6
10.5.5
10.6.0
10.5.4
10.5.3
10.5.2
10.5.1
10.4.3
8.15.9
10.5.0
8.15.8
10.4.2
8.15.7
10.4.1
10.3.2
10.4.0
10.3.1
8.15.6
10.3.0
10.2.0
8.15.5
10.1.2
8.15.4
10.1.1
8.15.3
10.1.0
10.0.2
10.0.1
10.0.0
8.15.2
8.15.1
8.15.0
8.14.0
8.13.2
8.13.1
8.13.0
8.12.1
8.12.0
8.11.1
8.11.0
8.10.1
8.10.0
8.9.1
8.9.0
6.12.0
8.8.0
8.7.2
8.7.1
8.7.0
6.12.1
8.6.0
7.2.3
7.1.5
8.5.2
8.5.1
8.5.0
8.4.0
8.3.2
8.3.1
8.3.0
8.2.3
8.2.2
8.2.1
8.2.0
8.1.2
8.1.1
8.1.0
8.0.1
8.0.0
7.2.2
7.2.1
7.2.0
7.1.4
7.1.3
7.1.2
7.1.1
7.1.0
6.11.3
6.11.2
6.11.1
6.11.0
6.10.9
6.10.8
6.10.7
6.10.6
6.10.5
6.10.4
6.10.3
6.10.2
6.10.1
6.10.0
6.9.1
6.7.0
6.6.2
6.6.1
6.6.0
6.5.6
6.5.5
6.5.4
6.5.3
6.5.2
6.5.1
6.5.0
6.4.3
6.4.2
6.4.1
6.4.0
6.3.7
6.3.6
6.3.5
6.3.4
6.3.3
6.3.2
6.3.1
6.3.0
6.2.1
6.2.0
6.1.2
6.1.1
5.2.12
5.2.11
5.2.10
5.2.9
5.2.8
5.2.7
5.2.6
5.2.5
5.2.4
5.2.3
5.2.2
5.2.1
7.0.3
7.0.2
7.0.1
7.0.0
6.9.3
6.9.2
6.9.0
6.8.1
6.1.11
6.1.0
6.0.2
6.0.1
6.0.0
6.8.0
Vulnerabilities (39)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU71996 - Double Free CVE-2022-4450 |
CWE-415 | Medium | 8.15.9, 10.4.3, 10.5.0 | 07.02.2023 |
SB2023020742 SB2023020748 SB2023020771 and 180 more |
||
| #VU71995 - Use After Free CVE-2023-0215 |
CWE-416 | Medium | 8.15.9, 10.4.3, 10.5.0 | 07.02.2023 |
SB2023020742 SB2023020747 SB2023020748 and 209 more |
||
| #VU71993 - Information Exposure Through Timing Discrepancy CVE-2022-4304 |
CWE-208 | Medium | 8.15.9, 10.4.3, 10.5.0 | 07.02.2023 |
SB2023020742 SB2023020748 SB2023020767 and 222 more |
||
| #VU71333 - Improper input validation CVE-2023-0101 |
CWE-20 | Medium | 8.15.8, 10.4.2 | 18.01.2023 |
SB20230118101 |
||
| #VU68718 - Use After Free CVE-2022-43680 |
CWE-416 | Medium | 8.15.7, 10.3.2, 10.4.1 | 25.10.2022 |
SB2022102560 SB2022102566 SB2022103010 and 99 more |
||
| #VU67532 - Use After Free CVE-2022-40674 |
CWE-416 | High | 8.15.7, 10.3.1 | 21.09.2022 |
SB2022092118 SB2022092119 SB2022092317 and 111 more |
||
| #VU66813 - NULL Pointer Dereference CVE-2022-2309 |
CWE-476 | Medium | 8.15.7, 10.3.1 | 29.08.2022 |
SB2022082928 SB2022082929 SB2022082930 and 28 more |
||
| #VU66153 - Heap-based Buffer Overflow CVE-2022-37434 |
CWE-122 | High | 8.15.7, 10.3.1 | 07.08.2022 |
SB2022080705 SB2022081833 SB2022081851 and 154 more |
||
| #VU64922 - Missing Encryption of Sensitive Data CVE-2022-2097 |
CWE-311 | Low | 8.15.9 | 05.07.2022 |
SB2022070509 SB2022070522 SB2022070531 and 112 more |
||
| #VU64559 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') CVE-2022-2068 |
CWE-78 | Medium | 8.15.9 | 21.06.2022 |
SB2022062120 SB2022062125 SB2022062236 and 135 more |
||
| #VU62765 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') CVE-2022-1292 |
CWE-78 | Medium | 8.15.9 | 03.05.2022 |
SB2022050315 SB2022050436 SB2022050503 and 141 more |
||
| #VU62741 - Integer overflow CVE-2022-29824 |
CWE-190 | High | 8.15.7, 10.3.1, 10.5.2 | 03.05.2022 |
SB2022050305 SB2022050306 SB2022050307 and 73 more |
||
| #VU60922 - Use After Free CVE-2022-23308 |
CWE-416 | High | 8.15.7, 10.3.1 | 01.03.2022 |
SB2022030109 SB2022030110 SB2022031503 and 59 more |
||
| #VU60739 - Integer overflow CVE-2022-25315 |
CWE-190 | High | 8.15.5, 10.2.0 | 21.02.2022 |
SB2022022109 SB2022022113 SB2022022411 and 99 more |
||
| #VU60738 - Integer overflow CVE-2022-25314 |
CWE-190 | Medium | 8.15.5, 10.2.0 | 21.02.2022 |
SB2022022109 SB2022022113 SB2022022411 and 68 more |
||
| #VU60737 - Stack-based buffer overflow CVE-2022-25313 |
CWE-121 | High | 8.15.5, 10.2.0 | 21.02.2022 |
SB2022022109 SB2022022113 SB2022022411 and 64 more |
||
| #VU60736 - Improper Control of Generation of Code ('Code Injection') CVE-2022-25235 |
CWE-94 | High | 8.15.5, 10.2.0 | 21.02.2022 |
SB2022022109 SB2022022113 SB2022022411 and 106 more |
||
| #VU60733 - Improper input validation CVE-2022-25236 |
CWE-20 | Medium | 8.15.5, 10.2.0 | 21.02.2022 |
SB2022022109 SB2022022113 SB2022022411 and 109 more |
||
| #VU60114 - Integer overflow CVE-2022-23990 |
CWE-190 | High | 8.15.3, 8.15.5, 10.1.1, 10.2.0 | 28.01.2022 |
SB2022012504 SB2022012804 SB2022020902 and 46 more |
||
| #VU59966 - Integer overflow CVE-2022-23852 |
CWE-190 | High | 8.15.3, 8.15.5, 10.1.1, 10.2.0 | 25.01.2022 |
SB2022012504 SB2022012622 SB2022020902 and 58 more |
Showing elements 1 - 20 out of 39