First published: Fri Apr 21 2017(Updated: )
Tenable Appliance 4.4.0, and possibly prior, contains a flaw in the Web UI that allows for the unauthorized manipulation of the admin password.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Tenable | <=4.4.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2017-8050 is classified as medium, reflecting potential risks to administrative control.
To fix CVE-2017-8050, upgrade your Tenable Appliance to version 4.4.1 or later.
CVE-2017-8050 affects Tenable Appliance versions up to and including 4.4.0.
CVE-2017-8050 allows unauthorized users to manipulate the admin password, compromising system security.
There is no documented workaround for CVE-2017-8050, hence upgrading is the recommended action.