First published: Tue Jun 21 2022(Updated: )
An authenticated attacker could create an audit file that bypasses PowerShell cmdlet checks and executes commands with administrator privileges.
Credit: vulnreport@tenable.com
Affected Software | Affected Version | How to fix |
---|---|---|
Tenable Nessus | <10.2.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-32973 is a vulnerability that allows an authenticated attacker to create an audit file that bypasses PowerShell cmdlet checks and executes commands with administrator privileges.
CVE-2022-32973 has a severity rating of critical (8.8).
Tenable Nessus up to version 10.2.0 is affected by CVE-2022-32973.
An attacker with authenticated access can create a specially crafted audit file to bypass PowerShell cmdlet checks and execute commands with administrator privileges.
It is recommended to upgrade to a patched version of Tenable Nessus to mitigate the vulnerability.