CVE-2026-4433
Severity CVSS v4.0:
MEDIUM
Type:
CWE-16
Configuration Errors
Publication date:
24/03/2026
Last modified:
24/03/2026
Description
An SSH misconfigurations exists in Tenable OT that led to the potential exfiltration of socket, port, and service information via the ostunnel user and GatewayPorts. This could be used to potentially glean information about the underlying system and give an attacker information that could be used to attempt to compromise the host.
Impact
Base Score 4.0
4.80
Severity 4.0
MEDIUM



