CVE-2024-1683: Tenable Identity Exposure
High severity, CVSS 7.3. EPSS: 0.3% chance of exploitation in the next 30 days.
A DLL injection vulnerability exists where an authenticated, low-privileged local attacker could modify application files on the TIE Secure Relay host, which could allow for overriding of the configuration and running of new Secure Relay services.
Affected products
- Tenable Identity Exposure: before 3.59.4 (fixed in 3.59.4)
Published 2024-02-23. Last modified 2026-06-17.