NA

CVE-2023-24493

Published: 26/01/2023 Updated: 02/02/2023
CVSS v3 Base Score: 5.7 | Impact Score: 3.6 | Exploitability Score: 2.1
VMScore: 0

Vulnerability Summary

A formula injection vulnerability exists in Tenable.sc due to improper validation of user-supplied input before returning it to users. An authenticated attacker could leverage the reporting system to export reports containing formulas, which would then require a victim to approve and execute on a host.

Vulnerable Product Search on Vulmon Subscribe to Product

tenable tenable.sc