First published: Tue Mar 20 2018(Updated: )
When installing Nessus to a directory outside of the default location, Nessus versions prior to 7.0.3 did not enforce secure permissions for sub-directories. This could allow for local privilege escalation if users had not secured the directories in the installation location.
Credit: vulnreport@tenable.com
Affected Software | Affected Version | How to fix |
---|---|---|
Tenable Nessus | <7.0.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-1141 is a vulnerability found in Nessus versions prior to 7.0.3.
If you have installed Nessus to a directory outside of the default location and have not secured the directories, this vulnerability could allow for local privilege escalation.
CVE-2018-1141 has a severity level of high.
To fix CVE-2018-1141, you need to upgrade Nessus to version 7.0.3 or later.
You can find more information about CVE-2018-1141 on the SecurityTracker website and the Tenable Security Advisory TNS-2018-01.