Known Vulnerabilities for products from Tenable

Listed below are 20 of the newest known vulnerabilities associated with the vendor "Tenable".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2022-24828 ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... 8.8 - HIGH 2022-04-13 2023-11-07
CVE-2022-24785 ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... 7.5 - HIGH 2022-04-04 2023-11-07
CVE-2022-23990 Expat (aka libexpat) before 2.4.4 has an integer overflow in the doProlog function. 7.5 - HIGH 2022-01-26 2023-11-07
CVE-2022-23852 Expat (aka libexpat) before 2.4.4 has a signed integer overflow in XML_GetBuffer, for configurations with a nonzero XML_CONTE... 9.8 - CRITICAL 2022-01-24 2022-10-29
CVE-2022-22827 storeAtts in xmlparse.c in Expat (aka libexpat) before 2.4.3 has an integer overflow. 8.8 - HIGH 2022-01-10 2022-10-06
CVE-2022-22826 nextScaffoldPart in xmlparse.c in Expat (aka libexpat) before 2.4.3 has an integer overflow. 8.8 - HIGH 2022-01-10 2022-10-06
CVE-2022-22825 lookup in xmlparse.c in Expat (aka libexpat) before 2.4.3 has an integer overflow. 8.8 - HIGH 2022-01-10 2022-10-06
CVE-2022-22824 defineAttribute in xmlparse.c in Expat (aka libexpat) before 2.4.3 has an integer overflow. 9.8 - CRITICAL 2022-01-10 2022-10-06
CVE-2022-22823 build_model in xmlparse.c in Expat (aka libexpat) before 2.4.3 has an integer overflow. 9.8 - CRITICAL 2022-01-10 2022-10-06
CVE-2022-22822 addBinding in xmlparse.c in Expat (aka libexpat) before 2.4.3 has an integer overflow. 9.8 - CRITICAL 2022-01-10 2022-10-06
CVE-2022-0130 Tenable.sc versions 5.14.0 through 5.19.1 were found to contain a remote code execution vulnerability which could allow a rem... 8.1 - HIGH 2022-01-14 2023-08-08
CVE-2021-41184 jQuery-UI is the official jQuery user interface library. Prior to version 1.13.0, accepting the value of the `of` option of t... 6.1 - MEDIUM 2021-10-26 2023-08-31
CVE-2021-41183 jQuery-UI is the official jQuery user interface library. Prior to version 1.13.0, accepting the value of various `*Text` opti... 6.1 - MEDIUM 2021-10-26 2023-08-31
CVE-2021-41182 jQuery-UI is the official jQuery user interface library. Prior to version 1.13.0, accepting the value of the `altField` optio... 6.1 - MEDIUM 2021-10-26 2023-08-31
CVE-2021-41116 Composer is an open source dependency manager for the PHP language. In affected versions windows users running Composer to in... 9.8 - CRITICAL 2021-10-05 2023-10-25
CVE-2021-34798 Malformed requests may cause the server to dereference a NULL pointer. This issue affects Apache HTTP Server 2.4.48 and earli... 7.5 - HIGH 2021-09-16 2023-11-07
CVE-2021-33193 A crafted method sent through HTTP/2 will bypass validation and be forwarded by mod_proxy, which can lead to request splittin... 7.5 - HIGH 2021-08-16 2023-11-07
CVE-2021-23841 The OpenSSL public API function X509_issuer_and_serial_hash() attempts to create a unique hash value based on the issuer and ... 5.9 - MEDIUM 2021-02-16 2023-11-07
CVE-2021-23840 Calls to EVP_CipherUpdate, EVP_EncryptUpdate and EVP_DecryptUpdate may overflow the output length argument in some cases wher... 7.5 - HIGH 2021-02-16 2023-11-07
CVE-2021-23358 The package underscore from 1.13.0-0 and before 1.13.0-2, from 1.3.2 and before 1.12.1 are vulnerable to Arbitrary Code Injec... 7.2 - HIGH 2021-03-29 2023-11-07

Known software with vulnerabilities from Tenable

Type Vendor Product Version
ApplicationTenableAppliance2.0.0
ApplicationTenableLog Correlation Engine4.8.0
ApplicationTenableNessus4.4.1.15078
ApplicationTenableNessus Agent6.10.2
ApplicationTenableNessus Network Monitor5.11.0
ApplicationTenablePlugin-set201402092115
ApplicationTenableSecuritycenter4.6
ApplicationTenableTenable.sc5.14.0
ApplicationTenableWeb Ui2.3.3