First published: Thu Sep 09 2021(Updated: )
Nessus Agent 8.3.0 and earlier was found to contain a local privilege escalation vulnerability which could allow an authenticated, local administrator to run specific executables on the Nessus Agent host. This is different than CVE-2021-20118.
Credit: vulnreport@tenable.com
Affected Software | Affected Version | How to fix |
---|---|---|
Tenable Nessus Agent | <=8.3.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-20117 is a local privilege escalation vulnerability in Nessus Agent 8.3.0 and earlier.
CVE-2021-20117 could allow an authenticated, local administrator to run specific executables on the Nessus Agent host.
CVE-2021-20117 has a severity rating of high.
To fix CVE-2021-20117, update Nessus Agent to version 8.3.1 or later.
You can find more information about CVE-2021-20117 at this link: https://www.tenable.com/security/tns-2021-15