Local File Manipulation Vulnerability in Nessus for Windows
CVE-2020-5793

7.8HIGH

What is CVE-2020-5793?

A vulnerability exists in Nessus for Windows affecting versions 8.9.0 through 8.12.0 and Nessus Agent 8.0.0 and 8.1.0. An authenticated local attacker can exploit this issue by crafting a malicious file, allowing them to copy user-supplied files to a specially designated path within a user directory. Successful exploitation requires valid credentials on the system, enabling the attacker to manipulate files in sensitive directories, which could compromise system integrity and security.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

Affected Version(s)

Tenable Nessus for Windows and Tenable Nessus Agent for Windows Nessus Agent 8.0.0 and 8.1.0 / Nessus 8.9.0 through Nessus 8.12.0

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.