CVE-2023-2005: Tenable Plugin Feed ID #202306261202 Fixes Privilege Escalation Vulnerability
Vulnerability in Tenable Tenable.Io, Tenable Nessus, Tenable Security Center.This issue affects Tenable.Io: before Plugin Feed ID #202306261202 ; Nessus: before Plugin Feed ID #202306261202 ; Security Center: before Plugin Feed ID #202306261202 .
This vulnerability could allow a malicious actor with sufficient permissions on a scan target to place a binary in a specific filesystem location, and abuse the impacted plugin in order to escalate privileges.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2023-2005?
The severity of CVE-2023-2005 is high with a CVSS score of 8.8.
Which software is affected by CVE-2023-2005?
The software affected by CVE-2023-2005 includes Tenable Nessus, Tenable SecurityCenter, and Tenable.Io.
How can a malicious actor exploit CVE-2023-2005?
A malicious actor can exploit CVE-2023-2005 to perform unauthorized actions and potentially gain access to sensitive information.
Is there a fix available for CVE-2023-2005?
Yes, a fix is available for CVE-2023-2005. It is recommended to update to the latest version of Tenable.Io, Nessus, or SecurityCenter, depending on the affected software.
Where can I find more information about CVE-2023-2005?
More information about CVE-2023-2005 can be found at the following link: [CVE-2023-2005](https://www.tenable.com/security/tns-2023-21).