Vulnerabilities > Tenable > Nessus > 8.15.3

DATE CVE VULNERABILITY TITLE RISK
2022-10-31 CVE-2022-3499 Information Exposure Through Log Files vulnerability in Tenable Nessus
An authenticated attacker could utilize the identical agent and cluster node linking keys to potentially allow for a scenario where unauthorized disclosure of agent logs and data is present.
network
low complexity
tenable CWE-532
6.5
2022-10-25 CVE-2022-33757 Unspecified vulnerability in Tenable Nessus
An authenticated attacker could read Nessus Debug Log file attachments from the web UI without having the correct privileges to do so.
network
low complexity
tenable
6.5
2022-06-21 CVE-2022-32973 Unspecified vulnerability in Tenable Nessus
An authenticated attacker could create an audit file that bypasses PowerShell cmdlet checks and executes commands with administrator privileges.
network
low complexity
tenable
critical
9.0
2022-06-21 CVE-2022-32974 Unspecified vulnerability in Tenable Nessus
An authenticated attacker could read arbitrary files from the underlying operating system of the scanner using a custom crafted compliance audit file without providing any valid SSH credentials.
network
low complexity
tenable
4.0
2022-03-15 CVE-2022-0778 Infinite Loop vulnerability in multiple products
The BN_mod_sqrt() function, which computes a modular square root, contains a bug that can cause it to loop forever for non-prime moduli.
7.5