Severity: Critical
ID: 239289
File Name: tencentos_TSSA_2022_0160.nasl
Version: 1.3
Type: local
Family: Tencent Local Security Checks
Published: 6/16/2025
Updated: 12/5/2025
Supported Sensors: Nessus
Risk Factor: Medium
Score: 5.9
Risk Factor: High
Base Score: 7.5
Temporal Score: 5.5
Vector: CVSS2#AV:N/AC:L/Au:N/C:P/I:P/A:P
CVSS Score Source: CVE-2022-29599
Risk Factor: Critical
Base Score: 9.8
Temporal Score: 8.5
Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Temporal Vector: CVSS:3.0/E:U/RL:O/RC:C
CPE: p-cpe:/a:tencent:tencentos_server:google-guice, p-cpe:/a:tencent:tencentos_server:sisu, p-cpe:/a:tencent:tencentos_server:maven, p-cpe:/a:tencent:tencentos_server:plexus-interpolation, p-cpe:/a:tencent:tencentos_server:httpcomponents-client, p-cpe:/a:tencent:tencentos_server:apache-commons-cli, p-cpe:/a:tencent:tencentos_server:httpcomponents-core, p-cpe:/a:tencent:tencentos_server:apache-commons-codec, p-cpe:/a:tencent:tencentos_server:apache-commons-lang3, p-cpe:/a:tencent:tencentos_server:plexus-cipher, p-cpe:/a:tencent:tencentos_server:jsr-305, p-cpe:/a:tencent:tencentos_server:geronimo-annotation, p-cpe:/a:tencent:tencentos_server:jansi, p-cpe:/a:tencent:tencentos_server:plexus-sec-dispatcher, cpe:/o:tencent:tencentos_server:3, p-cpe:/a:tencent:tencentos_server:maven-shared-utils, p-cpe:/a:tencent:tencentos_server:slf4j, p-cpe:/a:tencent:tencentos_server:apache-commons-io, p-cpe:/a:tencent:tencentos_server:maven-wagon, p-cpe:/a:tencent:tencentos_server:jsoup, p-cpe:/a:tencent:tencentos_server:atinject, p-cpe:/a:tencent:tencentos_server:plexus-classworlds, p-cpe:/a:tencent:tencentos_server:plexus-containers, p-cpe:/a:tencent:tencentos_server:guava, p-cpe:/a:tencent:tencentos_server:cdi-api, p-cpe:/a:tencent:tencentos_server:aopalliance, p-cpe:/a:tencent:tencentos_server:plexus-utils, p-cpe:/a:tencent:tencentos_server:maven-resolver
Required KB Items: Host/local_checks_enabled, Host/etc/os-release, Host/TencentOS/rpm-list, Host/cpu
Exploit Ease: No known exploits are available
Patch Publication Date: 9/8/2022
Vulnerability Publication Date: 9/8/2022
CVE: CVE-2022-29599