Local Privilege Escalation Vulnerability in Tenable Nessus Agent
CVE-2021-20118
6.7MEDIUM
What is CVE-2021-20118?
A local privilege escalation vulnerability exists in Nessus Agent 8.3.0 and earlier. This issue allows authenticated local administrators to execute certain binaries on the affected host, potentially compromising the integrity of the system. It is vital for users to apply updates or mitigate this vulnerability to enhance their security posture.
Affected Version(s)
Nessus Agent Nessus Agent 8.3.0 and earlier
References
CVSS V3.1
Score:
6.7
Severity:
MEDIUM
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
High
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved