CVE-2021-20099

Nessus Agent 8.2.4 and earlier for Windows were found to contain multiple local privilege escalation vulnerabilities which could allow an authenticated, local administrator to run specific Windows executables as the Nessus host. This is different than CVE-2021-20100.
References
Link Resource
https://www.tenable.com/security/tns-2021-12 Vendor Advisory
Configurations

Configuration 1 (hide)

AND
cpe:2.3:a:tenable:nessus:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

History

12 Jul 2022, 17:42

Type Values Removed Values Added
CWE CWE-269 NVD-CWE-noinfo

01 Jul 2021, 19:18

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : 4.6
v3 : 6.7
CWE CWE-269
CPE cpe:2.3:a:tenable:nessus:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*
References (MISC) https://www.tenable.com/security/tns-2021-12 - (MISC) https://www.tenable.com/security/tns-2021-12 - Vendor Advisory

28 Jun 2021, 11:15

Type Values Removed Values Added
New CVE

Information

Published : 2021-06-28 11:15

Updated : 2023-12-10 13:55


NVD link : CVE-2021-20099

Mitre link : CVE-2021-20099

CVE.ORG link : CVE-2021-20099


JSON object : View

Products Affected

tenable

  • nessus

microsoft

  • windows