Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Improper authorization in Nessus
Vulnerability Description
An improper authorization vulnerability exists where an authenticated, low privileged remote attacker could view a list of all the users available in the application.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Vulnerability Type
N/A
Vulnerability Title
Tenable Network Security Nessus 安全漏洞
Vulnerability Description
Tenable Network Security Nessus是美国Tenable Network Security公司的一款开源的系统漏洞扫描器。 Tenable Network Security Nessus 10.6.0之前的版本存在安全漏洞,该漏洞源于存在不正确的授权漏洞,经过身份验证的低权限远程攻击者可以查看应用程序中所有可用用户的列表。
CVSS Information
N/A
Vulnerability Type
N/A