Medium severity6.7NVD Advisory· Published Mar 19, 2021· Updated Jun 17, 2026
CVE-2021-20077
CVE-2021-20077
Description
Nessus Agent versions 7.2.0 through 8.2.2 were found to inadvertently capture the IAM role security token on the local host during initial linking of the Nessus Agent when installed on an Amazon EC2 instance. This could allow a privileged attacker to obtain the token.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- Tenable/Nessus Agentdescription
- Range: 7.2.0 - 8.2.2
Patches
Vulnerability mechanics
References
2- www.tenable.com/security/tns-2021-04-0nvdPatchVendor Advisory
- www.tenable.com/security/tns-2021-07nvdNot ApplicableVendor Advisory
News mentions
0No linked articles in our index yet.