High severity8.4NVD Advisory· Published Sep 30, 2024· Updated Jun 17, 2026
CVE-2024-9158
CVE-2024-9158
Description
A stored cross site scripting vulnerability exists in Nessus Network Monitor where an authenticated, privileged local attacker could inject arbitrary code into the NNM UI via the local CLI.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:tenable:nessus_network_monitor:*:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:tenable:nessus_network_monitor:*:*:*:*:*:*:*:*range: <6.5.0
- (no CPE)
- (no CPE)range: 0
Patches
Vulnerability mechanics
References
1- www.tenable.com/security/tns-2024-17nvdVendor Advisory
News mentions
0No linked articles in our index yet.