TROYANOSYVIRUS
Voltar para CVEs

CVE-2017-8051

N/A

Descricao

Tenable Appliance 3.5 - 4.4.0, and possibly prior versions, contains a flaw in the simpleupload.py script in the Web UI. Through the manipulation of the tns_appliance_session_user parameter, a remote attacker can inject arbitrary commands.

Detalhes CVE

Pontuacao CVSS v3.1N/A
Publicado4/21/2017
Ultima modificacao4/20/2025
Fontenvd
Avistamentos honeypot0

Produtos afetados

tenable:appliance

Fraquezas (CWE)

CWE-78

Correlacoes IOC

Sem correlacoes registradas

This product uses data from the NVD API but is not endorsed or certified by the NVD.