CVE-2021-20079: High severity nessus vulnerability
Published Jun 29, 2021
·Updated
Nessus versions 8.13.2 and earlier were found to contain a privilege escalation vulnerability which could allow a Nessus administrator user to upload a specially crafted file that could lead to gaining administrator privileges on the Nessus host.
Affected Software
1 affected component
Tenable Nessus<=8.13.2
Event History
Jun 29, 2021
CVE Published
via MITRE·06:16 PM
Data Sourced
via MITRE·06:16 PM
DescriptionWeakness
Frequently Asked Questions
1
What is CVE-2021-20079?
CVE-2021-20079 is a privilege escalation vulnerability in Nessus versions 8.13.2 and earlier.
2
How does CVE-2021-20079 affect Nessus?
CVE-2021-20079 could allow a Nessus administrator user to upload a specially crafted file that could lead to gaining administrator privileges on the Nessus host.
3
What is the severity of CVE-2021-20079?
CVE-2021-20079 has a severity rating of high - 6.7 out of 10.
4
Which versions of Nessus are affected by CVE-2021-20079?
Nessus versions 8.13.2 and earlier are affected by CVE-2021-20079.
5
How can I fix CVE-2021-20079?
Update Nessus to a version later than 8.13.2 to fix CVE-2021-20079.