Vulnerabilities
Vulnerable Software
A remote code execution vulnerability exists in Tenable Security Center's report generation functionality. An authenticated, non-administrative user could exploit this issue by supplying specially crafted input that is later processed unsafely during server-side report rendering, resulting in arbitrary code execution with the privileges of the service account.
CVSS Score
9.4
EPSS Score
0.014
Published
2026-08-14
An improper access control vulnerability exists where an authenticated user could access areas outside of their authorized scope.
CVSS Score
5.7
EPSS Score
0.002
Published
2026-02-23
An Indirect Object Reference (IDOR) in Security Center allows an authenticated remote attacker to escalate privileges via the 'owner' parameter.
CVSS Score
2.1
EPSS Score
0.002
Published
2026-02-23


Contact Us

Shodan ® - All rights reserved