3.5
CVSSv2

CVE-2020-5737

Published: 17/04/2020 Updated: 23/04/2020
CVSS v2 Base Score: 3.5 | Impact Score: 2.9 | Exploitability Score: 6.8
CVSS v3 Base Score: 5.4 | Impact Score: 2.7 | Exploitability Score: 2.3
VMScore: 312
Vector: AV:N/AC:M/Au:S/C:N/I:P/A:N

Vulnerability Summary

Stored XSS in Tenable.Sc prior to 5.14.0 could allow an authenticated remote malicious user to craft a request to execute arbitrary script code in a user's browser session. Updated input validation techniques have been implemented to correct this issue.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

tenable tenable.sc 5.14.0

tenable tenable.sc 5.14.1

Vendor Advisories

Tenablesc leverages third-party software to help provide underlying functionality One third-party component (jQuery) was found to contain vulnerabilities, and updated versions have been made available by the providers Out of caution and in line with good practice, Tenable opted to upgrade the bundled libraries to address the potential impact of ...