Unrated severityNVD Advisory· Published Jul 23, 2014· Updated May 6, 2026
CVE-2014-4980
CVE-2014-4980
Description
The /server/properties resource in Tenable Web UI before 2.3.5 for Nessus 5.2.3 through 5.2.7 allows remote attackers to obtain sensitive information via the token parameter.
Affected products
6Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
7- packetstormsecurity.com/files/127532/Tenable-Nessus-5.2.7-Parameter-Tampering-Authentication-Bypass.htmlnvdExploit
- www.tenable.com/security/tns-2014-05nvdVendor Advisory
- www.halock.com/blog/cve-2014-4980-parameter-tampering-nessus-web-ui/nvd
- www.osvdb.org/109376nvd
- www.securityfocus.com/archive/1/532839/100/0/threadednvd
- www.securityfocus.com/bid/68782nvd
- www.securitytracker.com/id/1030614nvd
News mentions
0No linked articles in our index yet.