CVE-2024-1471: Tenable Security Center

Medium severity, CVSS 4.8. EPSS: 0.4% chance of exploitation in the next 30 days.

An HTML injection vulnerability exists where an authenticated, remote attacker with administrator privileges on the Security Center application could modify Repository parameters, which could lead to HTML redirection attacks.

Affected products

  • Tenable Security Center: before 6.3.0 (fixed in 6.3.0)

Published 2024-02-14. Last modified 2026-06-17.