6.5
CVSSv3

CVE-2023-0476

Published: 26/01/2023 Updated: 06/02/2023
CVSS v3 Base Score: 6.5 | Impact Score: 3.6 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

A LDAP injection vulnerability exists in Tenable.sc due to improper validation of user-supplied input before returning it to users. An authenticated attacker could generate data in Active Directory using the application account through blind LDAP injection.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

tenable tenable.sc