CVE-2020-5812: Medium severity Tenable Nessus Amazon Machine Image vulnerability
Published Feb 5, 2021
·Updated
Nessus AMI versions 8.12.0 and earlier were found to either not validate, or incorrectly validate, a certificate which could allow an attacker to spoof a trusted entity by using a man-in-the-middle (MITM) attack.
Affected Software
1 affected component
Tenable Nessus Amazon Machine Image<=8.12.0
Event History
Feb 5, 2021
CVE Published
via MITRE·11:44 PM
Data Sourced
via MITRE·11:44 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2020-5812?
CVE-2020-5812 is rated as a high severity vulnerability due to its potential for man-in-the-middle attacks.
2
How do I fix CVE-2020-5812?
To fix CVE-2020-5812, upgrade to Nessus AMI version 8.12.1 or later.
3
What type of attack does CVE-2020-5812 allow?
CVE-2020-5812 allows attackers to perform man-in-the-middle attacks by spoofing trusted entities.
4
Which versions of Nessus AMI are affected by CVE-2020-5812?
Nessus AMI versions 8.12.0 and earlier are affected by CVE-2020-5812.
5
Is CVE-2020-5812 easy to exploit?
Yes, CVE-2020-5812 can be exploited easily if the affected Nessus AMI is deployed without the necessary patches.