CVE-2024-0971: Tenable Nessus

Medium severity, CVSS 6.5. EPSS: 0.8% chance of exploitation in the next 30 days.

A SQL injection vulnerability exists where an authenticated, low-privileged remote attacker could potentially alter scan DB content.

Affected products

  • Tenable Nessus: before 10.7.0 (fixed in 10.7.0)

Published 2024-02-07. Last modified 2026-06-17.