Search Results (Refine Search)
- Results Type: Overview
- Keyword (text search): cpe:2.3:a:tenable:web_ui:2.3.3:*:*:*:*:*:*:*
Vuln ID | Summary | CVSS Severity |
---|---|---|
CVE-2014-7280 |
Cross-site scripting (XSS) vulnerability in the Web UI before 2.3.4 Build #85 for Tenable Nessus 5.x allows remote web servers to inject arbitrary web script or HTML via the server header. Published: October 21, 2014; 11:55:07 AM -0400 |
V3.x:(not available) V2.0: 4.3 MEDIUM |
CVE-2014-4980 |
The /server/properties resource in Tenable Web UI before 2.3.5 for Nessus 5.2.3 through 5.2.7 allows remote attackers to obtain sensitive information via the token parameter. Published: July 23, 2014; 10:55:06 AM -0400 |
V3.x:(not available) V2.0: 5.0 MEDIUM |