CVE-2024-3289

When installing Nessus to a directory outside of the default location on a Windows host, Nessus versions prior to 10.7.3 did not enforce secure permissions for sub-directories. This could allow for local privilege escalation if users had not secured the directories in the non-default installation location.
Configurations

No configuration.

History

No history.

Information

Published : 2024-05-17 17:15

Updated : 2024-05-17 18:35


NVD link : CVE-2024-3289

Mitre link : CVE-2024-3289

CVE.ORG link : CVE-2024-3289


JSON object : View

Products Affected

No product.

CWE
CWE-281

Improper Preservation of Permissions