Known vulnerabilities in Tenable Nessus 8.5.1

Version: 8.5.1
Software CPE: cpe:2.3:a:tenable_network_security:tenable_nessus:*:*:*:*:*:*:*:*
Total vulnerabilities: 39
Public exploits: 5
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.3

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting Tenable Nessus version 8.5.1 Tenable Nessus 8.5.1 is affected by 39 vulnerabilities: 16 high, 15 medium, 8 low Critical High Medium Low

Vulnerabilities (39)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU71996 - Double Free
CVE-2022-4450
CWE-415 Medium
No
No
8.15.9, 10.4.3, 10.5.0 07.02.2023 SB2023020742
SB2023020748
SB2023020771
and 180 more
#VU71995 - Use After Free
CVE-2023-0215
CWE-416 Medium
No
No
8.15.9, 10.4.3, 10.5.0 07.02.2023 SB2023020742
SB2023020747
SB2023020748
and 209 more
#VU71993 - Information Exposure Through Timing Discrepancy
CVE-2022-4304
CWE-208 Medium
No
No
8.15.9, 10.4.3, 10.5.0 07.02.2023 SB2023020742
SB2023020748
SB2023020767
and 222 more
#VU71333 - Improper input validation
CVE-2023-0101
CWE-20 Medium
No
No
8.15.8, 10.4.2 18.01.2023 SB20230118101
#VU68718 - Use After Free
CVE-2022-43680
CWE-416 Medium
No
No
8.15.7, 10.3.2, 10.4.1 25.10.2022 SB2022102560
SB2022102566
SB2022103010
and 99 more
#VU67532 - Use After Free
CVE-2022-40674
CWE-416 High
No
No
8.15.7, 10.3.1 21.09.2022 SB2022092118
SB2022092119
SB2022092317
and 111 more
#VU66813 - NULL Pointer Dereference
CVE-2022-2309
CWE-476 Medium
No
No
8.15.7, 10.3.1 29.08.2022 SB2022082928
SB2022082929
SB2022082930
and 28 more
#VU66153 - Heap-based Buffer Overflow
CVE-2022-37434
CWE-122 High
Public exploit available
No
8.15.7, 10.3.1 07.08.2022 SB2022080705
SB2022081833
SB2022081851
and 154 more
#VU64922 - Missing Encryption of Sensitive Data
CVE-2022-2097
CWE-311 Low
No
No
8.15.9 05.07.2022 SB2022070509
SB2022070522
SB2022070531
and 112 more
#VU64559 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2022-2068
CWE-78 Medium
No
No
8.15.9 21.06.2022 SB2022062120
SB2022062125
SB2022062236
and 135 more
#VU62765 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2022-1292
CWE-78 Medium
Public exploit available
No
8.15.9 03.05.2022 SB2022050315
SB2022050436
SB2022050503
and 141 more
#VU62741 - Integer overflow
CVE-2022-29824
CWE-190 High
No
No
8.15.7, 10.3.1, 10.5.2 03.05.2022 SB2022050305
SB2022050306
SB2022050307
and 73 more
#VU60922 - Use After Free
CVE-2022-23308
CWE-416 High
No
No
8.15.7, 10.3.1 01.03.2022 SB2022030109
SB2022030110
SB2022031503
and 59 more
#VU60739 - Integer overflow
CVE-2022-25315
CWE-190 High
No
No
8.15.5, 10.2.0 21.02.2022 SB2022022109
SB2022022113
SB2022022411
and 99 more
#VU60738 - Integer overflow
CVE-2022-25314
CWE-190 Medium
No
No
8.15.5, 10.2.0 21.02.2022 SB2022022109
SB2022022113
SB2022022411
and 68 more
#VU60737 - Stack-based buffer overflow
CVE-2022-25313
CWE-121 High
No
No
8.15.5, 10.2.0 21.02.2022 SB2022022109
SB2022022113
SB2022022411
and 64 more
#VU60736 - Improper Control of Generation of Code ('Code Injection')
CVE-2022-25235
CWE-94 High
No
No
8.15.5, 10.2.0 21.02.2022 SB2022022109
SB2022022113
SB2022022411
and 106 more
#VU60733 - Improper input validation
CVE-2022-25236
CWE-20 Medium
No
No
8.15.5, 10.2.0 21.02.2022 SB2022022109
SB2022022113
SB2022022411
and 109 more
#VU60114 - Integer overflow
CVE-2022-23990
CWE-190 High
No
No
8.15.3, 8.15.5, 10.1.1, 10.2.0 28.01.2022 SB2022012504
SB2022012804
SB2022020902
and 46 more
#VU59966 - Integer overflow
CVE-2022-23852
CWE-190 High
No
No
8.15.3, 8.15.5, 10.1.1, 10.2.0 25.01.2022 SB2022012504
SB2022012622
SB2022020902
and 58 more


Showing elements 1 - 20 out of 39