First published: Mon Nov 20 2023(Updated: )
An arbitrary file write vulnerability exists where an authenticated, remote attacker with administrator privileges on the Nessus application could alter Nessus Rules variables to overwrite arbitrary files on the remote host, which could lead to a denial of service condition.
Credit: vulnreport@tenable.com
Affected Software | Affected Version | How to fix |
---|---|---|
Tenable Nessus | <10.5.7 | |
Tenable Nessus | >=10.6.0<10.6.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-6062 is an arbitrary file write vulnerability in the Nessus application.
CVE-2023-6062 has a severity rating of 6.8 (Medium).
CVE-2023-6062 can allow an attacker to overwrite arbitrary files on the remote host, potentially leading to a denial of service.
Nessus versions up to 10.5.7 and versions between 10.6.0 and 10.6.3 are affected by CVE-2023-6062.
To fix CVE-2023-6062, update Nessus to a version that is not affected by the vulnerability.