← Back to CVE List

CVE-2017-8051

Published: 2017-04-21T18:59Z
Last Modified: 2024-11-21T03:33Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
Tenable Appliance 3.5 - 4.4.0, and possibly prior versions, contains a flaw in the simpleupload.py script in the Web UI. Through the manipulation of the tns_appliance_session_user parameter, a remote attacker can inject arbitrary commands. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt