VendorsTenablenessus_network_monitorall versions
Vulnerabilities

Tenable Nessus Network Monitor

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

14CVEs
CVE-2021-3711
SM2 Decryption Buffer Overflow
Published 2021-08-24 · Modified
9.8EPSS 0.878
CVE-2023-5622
Privilege Escalation
Published 2023-10-26 · Modified
8.8EPSS 0.005
CVE-2024-9158
XSS
Published 2024-09-30 · Analyzed
8.4EPSS 0.003
CVE-2020-5794
A vulnerability in Nessus Network Monitor versions 5.11.0, 5.11.1, and 5.12.0 for Windows could allow an authenticated local attacker to execute arbitrary code by copying user-supplied files to a specially constructed path in a specifically named user directory. The attacker needs valid credentials on the Windows system to exploit this vulnerability.
Published 2020-11-06 · Modified
7.8EPSS 0.004
CVE-2025-24917
Improper Access Control leads to Local Privilege Escalation
Published 2025-05-23 · Analyzed
7.8EPSS 0.002
CVE-2023-5623
Privilege Escalation
Published 2023-10-26 · Modified
7.8EPSS 0.002
CVE-2025-24916
Improper Access Control leads to Local Priviledge Escalation
Published 2025-05-23 · Analyzed
7.8EPSS 0.001
CVE-2021-23840
Integer overflow in CipherUpdate
Published 2021-02-16 · Modified
7.5EPSS 0.507
CVE-2021-3712
Read buffer overruns processing ASN.1 strings
Published 2021-08-24 · Modified
7.4EPSS 0.504
CVE-2021-3450
CA certificate check bypass with X509_V_FLAG_X509_STRICT
Published 2021-03-25 · Modified
7.4EPSS 0.183
CVE-2023-5624
Blind SQL Injection
Published 2023-10-26 · Modified
7.2EPSS 0.005
CVE-2021-3449
NULL pointer deref in signature_algorithms processing
Published 2021-03-25 · Modified
5.9EPSS 0.635
CVE-2021-23841
Null pointer deref in X509_issuer_and_serial_hash()
Published 2021-02-16 · Modified
5.9EPSS 0.074
CVE-2020-1971
EDIPARTYNAME NULL pointer dereference
Published 2020-12-08 · Modified
5.9EPSS 0.071