First published: Mon Nov 20 2023(Updated: )
An arbitrary file write vulnerability exists where an authenticated attacker with privileges on the managing application could alter Nessus Rules variables to overwrite arbitrary files on the remote host, which could lead to a denial of service condition.
Credit: vulnreport@tenable.com
Affected Software | Affected Version | How to fix |
---|---|---|
Tenable Nessus | <10.4.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-6178 is an arbitrary file write vulnerability in Tenable Nessus.
This vulnerability allows an authenticated attacker with privileges on the managing application to overwrite arbitrary files on the remote host, potentially leading to a denial of service condition.
CVE-2023-6178 has a severity rating of 6.8 (medium).
Tenable Nessus versions up to and excluding 10.4.4 are affected by CVE-2023-6178.
To fix CVE-2023-6178, it is recommended to update Tenable Nessus to version 10.4.4 or higher.