4.8
CVSSv3

CVE-2016-1000028

Published: 27/12/2019 Updated: 31/12/2019
CVSS v2 Base Score: 3.5 | Impact Score: 2.9 | Exploitability Score: 6.8
CVSS v3 Base Score: 4.8 | Impact Score: 2.7 | Exploitability Score: 1.7
VMScore: 312
Vector: AV:N/AC:M/Au:S/C:N/I:P/A:N

Vulnerability Summary

Tenable Nessus prior to 6.8 has a stored XSS issue that requires admin-level authentication to the Nessus UI, and would only potentially impact other admins. (Tenable ID 5198).

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

tenable nessus

Vendor Advisories

Nessus has been found to contain four vulnerabilities The first is in the third-party library, libexpat, and the other three are native to Nessus: CVE-2016-0718 - The Expat XML Parser (expat/libexpat) contains an overflow condition that is triggered as user-supplied input is not properly validated when handling malformed input documents This may ...