CVE-2023-0101: Tenable Nessus

High severity, CVSS 8.8. EPSS: 0.8% chance of exploitation in the next 30 days.

A privilege escalation vulnerability was identified in Nessus versions 8.10.1 through 8.15.8 and 10.0.0 through 10.4.1. An authenticated attacker could potentially execute a specially crafted file to obtain root or NT AUTHORITY / SYSTEM privileges on the Nessus host.

Affected products

  • Tenable Nessus: from 8.10.1, before 8.15.8 (fixed in 8.15.8); from 10.0.0, before 10.4.2 (fixed in 10.4.2)

Published 2023-01-20. Last modified 2026-06-17.