icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons_061

Tenable Product Security Advisories

This page contains information regarding security vulnerabilities that may impact Tenable's products. This may include issues specific to our software, or due to the use of third-party libraries within our software. Tenable strongly encourages users to ensure that they upgrade or apply relevant patches in a timely manner.

Tenable takes product security very seriously. If you believe you have found a vulnerability in one of our products, we ask that you please work with us to quickly resolve it in order to protect customers. Tenable believes in responding quickly to such reports, maintaining communication with researchers, and providing a solution in short order.

For more details on submitting vulnerability information, please see our Vulnerability Reporting Guidelines page.

Stay up to date with new advisories by subscribing to our RSS feed.

Find a vulnerability in a Tenable product?

Please report it here

Report

Vulnerabilities discovered by Tenable engineers

View now

Date Advisory ID Name Severity
November 27, 2016 TNS-2016-19 [R5] SecurityCenter 5.4.1 Fixes Multiple Vulnerabilities High
November 9, 2016 TNS-2016-18 [R2] Log Correlation Engine (LCE) 4.8.1 Fixes Multiple Vulnerabilities High
November 9, 2016 TNS-2016-17 [R2] Nessus 6.9.1 Fixes One Vulnerability Low
October 25, 2016 TNS-2016-16 [R4] Nessus 6.9 Fixes Multiple Vulnerabilities High
October 5, 2016 TNS-2016-15 [R2] Tenable Appliance 4.3.1 Fixes A Traversal Vulnerability Medium
September 7, 2016 TNS-2016-14 [R2] LCE 4.8.1 Fixes Multiple Third-party Library Vulnerabilities High
August 2, 2016 TNS-2016-13 [R2] PVS 5.1.0 Fixes Multiple Third-party Library Vulnerabilities High
July 21, 2016 TNS-2016-12 [R2] SecurityCenter 5.4 Fixes Multiple Third-party Library Vulnerabilities Medium
July 13, 2016 TNS-2016-11 [R4] Nessus 6.8 Fixes Multiple Vulnerabilities High
May 18, 2016 TNS-2016-10 [R4] OpenSSL '20160503' Advisory Affects Tenable Products High
May 5, 2016 TNS-2016-09 [R6] PHP < 5.6.21 Vulnerabilities Affect Tenable SecurityCenter High
April 11, 2016 TNS-2016-08 [R4] Nessus 6.6 Fixes Two Vulnerabilities Medium
March 29, 2016 TNS-2016-07 [R2] SecurityCenter 5.2.0 Multiple Vulnerabilities Low
March 24, 2016 TNS-2016-06 [R2] Log Correlation Engine (LCE) 4.8.0 Updates Libxml2 Low
March 9, 2016 TNS-2016-05 [R2] GNU C Library (glibc) Vulnerability Affects Tenable Appliance High
March 8, 2016 TNS-2016-04 [R3] PHP < 5.6.18 / PCRE < 8.38 Vulnerabilities Affect Tenable SecurityCenter Low
March 2, 2016 TNS-2016-03 [R11] OpenSSL '20160301' Advisory Affects Tenable Products High
February 15, 2016 TNS-2016-02 [R3] Nessus < 6.5.5 Multiple Vulnerabilities Low
January 6, 2016 TNS-2016-01 [R6] OpenSSL '20151203' Advisory Affects Tenable SecurityCenter Low
December 20, 2015 TNS-2015-12 [R2] SecurityCenter .audit File Upload Stored XSS Low
August 20, 2015 TNS-2015-11 [R3] Apache Vulnerabilities Affects Tenable SecurityCenter Low
July 22, 2015 TNS-2015-10 [R3] Tenable SecurityCenter Post-authentication Remote Command Execution High
July 20, 2015 TNS-2015-09 [R3] PHP < 5.4.43 Vulnerability Affects Tenable SecurityCenter High
July 20, 2015 TNS-2015-08 [R4] OpenSSL 'secadv_20150709' Advisory Affects Tenable SecurityCenter Low
June 30, 2015 TNS-2015-07 [R6] OpenSSL 'secadv_20150611' Advisory Affects Tenable Products Medium
June 15, 2015 TNS-2015-06 [R3] PHP < 5.4.41 Vulnerabilities Affect Tenable SecurityCenter High
May 20, 2015 TNS-2015-05 [R3] SQLite Vulnerabilities Affect Tenable Nessus High
March 29, 2015 TNS-2015-04 [R5] OpenSSL '20150319' Advisory Affects Tenable Products High
February 3, 2015 TNS-2015-03 [R6] OpenSSL '20150108' Advisory Affects Tenable Products Medium
February 3, 2015 TNS-2015-02 [R4] PHP < 5.5.21 / 5.4.37 Vulnerabilities Affect Tenable Products Medium
January 9, 2015 TNS-2015-01 [R2] NTP Vulnerabilities Affects Tenable Appliance Medium
November 7, 2014 TNS-2014-11 [R6] OpenSSL '20141015' Advisory Affects Tenable Products Medium
November 5, 2014 TNS-2014-10 [R2] PHP Integer Overflow Affects Tenable's SecurityCenter Low
October 19, 2014 TNS-2014-09 [R5] SSLv3 Protocol Vulnerability Affects Tenable Products (POODLE) Low
October 7, 2014 TNS-2014-08 [R2] Nessus Web UI Scanned Content Stored XSS Low
September 25, 2014 TNS-2014-07 [R6 GNU bash 'Shellshock' Vulnerability Affects Tenable Appliance High
August 21, 2014 TNS-2014-06 [R3] OpenSSL Protocol Downgrade Vulnerability Affects Tenable Products Low
July 21, 2014 TNS-2014-05 [R5] Nessus Web UI /server/properties token Parameter Remote Information Disclosure Info
July 16, 2014 TNS-2014-04 [R5] PHP / Apache Vulnerabilities Affect Tenable SecurityCenter Medium
June 12, 2014 TNS-2014-03 [R7] OpenSSL 'CCS Injection' Vulnerability Affects Tenable Products Low
April 9, 2014 TNS-2014-02 [R7] OpenSSL 'Heartbleed' Vulnerability Affects Tenable SecurityCenter Low
March 20, 2014 TNS-2014-01 [R2] Tenable Nessus Malicious Process Detection Temporary Service Binary Modification Local Privilege Escalation Medium
September 23, 2013 TNS-2013-01 [R4] Tenable SecurityCenter devform.php message Parameter Reflected XSS Low
October 25, 2011 TNS-2011-01 [R4] OpenSSL SSL/TLS Renegotiation Saturation Remote DoS Affects Tenable Nessus Low
October 27, 2010 TNS-2010-03 [R1] QtWeb Path Subversion Vulnerability Affects Tenable Nessus Medium
July 26, 2010 TNS-2010-02 [R2] Tenable Nessus Web UI /feed Method Remote Version Disclosure Info
June 24, 2010 TNS-2010-01 [R2] Tenable Nessus Web UI Reflected XSS Medium