Vulnerabilities > Tenable > Nessus > 8.6.0

DATE CVE VULNERABILITY TITLE RISK
2019-10-23 CVE-2019-3982 Improper Input Validation vulnerability in Tenable Nessus
Nessus versions 8.6.0 and earlier were found to contain a Denial of Service vulnerability due to improper validation of specific imported scan types.
network
low complexity
tenable CWE-20
6.5
2019-06-24 CVE-2018-20843 XXE vulnerability in multiple products
In libexpat in Expat before 2.2.7, XML input including XML names that contain a large number of colons could make the XML parser consume a high amount of RAM and CPU resources while processing (enough to be usable for denial-of-service attacks).
7.5