CVE Published: 14/02/2024 |
CVE Updated: 01/08/2024 |
CVE Year: 2024 Source: tenable |
Vendor: Tenable |
Product: Security Center Status : PUBLISHED
CVE-2024-1367 Description
A command injection vulnerability exists where an authenticated, remote attacker with administrator privileges on the Security Center application could modify Logging parameters, which could lead to the execution of arbitrary code on the Security Center host.
Metrics
CVSS Version: 3.1 |
Base Score: 7.2 HIGH Vector: CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H