Nessus is a widely deployed vulnerability-scanning platform whose focused product line concentrates on the scanner itself and associated plugins and components. The vendor's disclosures reflect the attack surface of web-connected scanning infrastructure, with recurring weaknesses in path traversal, information exposure, cross-site scripting, and buffer-boundary handling that are typical of applications parsing untrusted input and managing privileged access. Public exploit code has a notable tendency to emerge for this vendor's vulnerabilities, making patching cycles operationally important for organizations relying on the scanner for security assessment. Live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Nessus over time
Signals from CVEs in this vendor scope (13 CVEs).
13 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2007-4061HIGH Directory traversal vulnerability in a certain ActiveX control in Nessus Vulnerability Scanner 3.0.6 allows remote attackers to create or overwrite arbitrary files via a .. (dot do | Jul 30, 2007 | 9.3 | 38 | NO | YES |
CVE-2007-4031HIGH Directory traversal vulnerability in a certain ActiveX control in Nessus Vulnerability Scanner 3.0.6 allows remote attackers to delete arbitrary files via a .. (dot dot) in the arg | Jul 27, 2007 | 7.8 | 31 | NO | YES |
CVE-2007-4062HIGH The SCANCTRL.ScanCtrlCtrl.1 ActiveX control in scan.dll in Nessus Vulnerability Scanner 3.0.6 allows remote attackers to delete arbitrary files via unspecified vectors involving th | Jul 30, 2007 | 7.8 | 29 | NO | YES |
CVE-2003-0372MEDIUM Signed integer vulnerability in libnasl in Nessus before 2.0.6 allows local users with plugin upload privileges to cause a denial of service (core dump) and possibly execute arbitr | Jun 16, 2003 | 4.6 | 26 | NO | YES |
CVE-2003-0374HIGH Multiple unknown vulnerabilities in Nessus before 2.0.6, in libnessus and possibly libnasl, a different set of vulnerabilities than those identified by CVE-2003-0372 and CVE-2003-0 | Jun 16, 2003 | 10.0 | 25 | NO | NO |
CVE-2010-2989MEDIUM nessusd_www_server.nbin in the Nessus Web Server plugin 1.2.4 for Nessus allows remote attackers to obtain sensitive information via a request to the /feed method, which reveals th | Aug 10, 2010 | 5.0 | 18 | NO | NO |
CVE-2010-2914MEDIUM Cross-site scripting (XSS) vulnerability in nessusd_www_server.nbin in the Nessus Web Server plugin 1.2.4 for Nessus allows remote attackers to inject arbitrary web script or HTML | Jul 30, 2010 | 4.3 | 15 | NO | NO |
CVE-2007-3546MEDIUM Cross-site scripting (XSS) vulnerability in the Windows GUI in Nessus Vulnerability Scanner before 3.0.6 allows remote attackers to inject arbitrary web script or HTML via unspecif | Jul 3, 2007 | 4.3 | 14 | NO | NO |
CVE-2003-0373MEDIUM Multiple buffer overflows in libnasl in Nessus before 2.0.6 allow local users with plugin upload privileges to cause a denial of service (core dump) and possibly execute arbitrary | Jun 16, 2003 | 4.4 | 14 | NO | NO |
A race condition in nessus-adduser in Nessus 2.0.11 and possibly earlier versions, if the TMPDIR environment variable is not set, allows local users to gain privileges. | Dec 31, 2004 | 3.7 | 13 | NO | NO |
Signals from CVEs in this vendor scope (13 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Nessus.
Media articles that mention a CVE ID that affects a product developed by Nessus — matched by CVE ID, not by vendor name.