Tenable Nessus
cpe:2.3:a:tenable:nessus:*:*:*:*:*:*:*
- <= 10.8.3
A local privilege escalation vulnerability exists in Tenable Nessus versions prior to 10.8.4 when installed in a non-default location on Windows. These versions did not apply secure permissions to sub-directories, potentially allowing users to escalate privileges if they had not manually secured the directories in the non-default installation path.
Exploitation of this vulnerability could lead to unauthorized local privilege escalation on the affected Windows system.
Users can upgrade to Tenable Nessus version 10.8.4, which addresses this vulnerability. The installation files are available from the Tenable Downloads Portal.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.