CVE-2023-6062: Arbitrary File Write
Published Nov 20, 2023
·Updated
An arbitrary file write vulnerability exists where an authenticated, remote attacker with administrator privileges on the Nessus application could alter Nessus Rules variables to overwrite arbitrary files on the remote host, which could lead to a denial of service condition.
Affected Software
2 affected components
Tenable Nessus<10.5.7
Tenable Nessus>=10.6.0<10.6.3
Event History
Nov 20, 2023
CVE Published
08:20 PM
Data Sourced
08:20 PM
DescriptionSeverity
Frequently Asked Questions
1
What is CVE-2023-6062?
CVE-2023-6062 is an arbitrary file write vulnerability in the Nessus application.
2
How severe is CVE-2023-6062?
CVE-2023-6062 has a severity rating of 6.8 (Medium).
3
What is the impact of CVE-2023-6062?
CVE-2023-6062 can allow an attacker to overwrite arbitrary files on the remote host, potentially leading to a denial of service.
4
Which software versions are affected by CVE-2023-6062?
Nessus versions up to 10.5.7 and versions between 10.6.0 and 10.6.3 are affected by CVE-2023-6062.
5
How can I fix CVE-2023-6062?
To fix CVE-2023-6062, update Nessus to a version that is not affected by the vulnerability.