CVE-2023-5624

Severity CVSS v4.0:
Pending analysis
Type:
CWE-20 Input Validation
Publication date:
26/10/2023
Last modified:
06/11/2023

Description

<br /> Under certain conditions, Nessus Network Monitor was found to not properly enforce input validation. This could allow an admin user to alter parameters that could potentially allow a blindSQL injection.<br /> <br />

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:tenable:nessus_network_monitor:*:*:*:*:*:*:*:* 6.3.0 (excluding)


References to Advisories, Solutions, and Tools