Security Center
Tenable · 32 CVEs
Command Injection
Aug 14, 2026
Command Injection
Aug 14, 2026
SQL Injection
Aug 14, 2026
Improper Input Validation
Aug 14, 2026
Improper Access Control
Aug 14, 2026
Insuffucient Protections Lead to Brute Force
Aug 14, 2026
Local Privilege Escalation
Aug 14, 2026
SQL Injection
Aug 14, 2026
Privilege Escalation
Aug 14, 2026
Remote Code Execution
Aug 14, 2026
Remote Code Execution
Aug 14, 2026
Command Injection
Jul 21, 2026
Blind SQL Injection
Jul 21, 2026
Command Injection
Jul 21, 2026
Command Injection
Jul 21, 2026
An authenticated non-admin user can exploit a SQL injection flaw in the ticketing REST API to access sensitive data sto…
Jul 21, 2026
Improper Access Control
Feb 23, 2026
Indirect Object Reference (IDOR) in Security Center
Feb 23, 2026
[R1] Stand-alone Security Patches Available for Tenable Security Center versions 6.5.1, 6.6.0 and 6.7.2: SC-202602.1 +…
Feb 17, 2026
Improper Access Control
Oct 8, 2025
An Improper Certificate Validation vulnerability exists in Tenable Security Center where an authenticated, privileged a…
Dec 9, 2024
Improper privilege management
Jun 12, 2024
Stored Cross Site Scripting
Jun 12, 2024
HTML Injection Vulnerability
Feb 14, 2024
Command Injection Vulnerability in Tenable Security Center
Feb 14, 2024
| CVE ID | Description | Severity | EPSS | Published |
|---|---|---|---|---|
| CVE-2026-19682 | Command Injection | CRITICAL | 2.84% | Aug 14, 2026 |
| CVE-2026-19681 | Command Injection | CRITICAL | 9.94% | Aug 14, 2026 |
| CVE-2026-19680 | SQL Injection | HIGH | 0.32% | Aug 14, 2026 |
| CVE-2026-19679 | Improper Input Validation | HIGH | 1.60% | Aug 14, 2026 |
| CVE-2026-19639 | Improper Access Control | MEDIUM | 0.30% | Aug 14, 2026 |
| CVE-2026-19636 | Insuffucient Protections Lead to Brute Force | MEDIUM | 0.26% | Aug 14, 2026 |
| CVE-2026-19635 | Local Privilege Escalation | HIGH | 0.19% | Aug 14, 2026 |
| CVE-2026-19631 | SQL Injection | MEDIUM | 0.39% | Aug 14, 2026 |
| CVE-2026-19629 | Privilege Escalation | HIGH | 0.39% | Aug 14, 2026 |
| CVE-2026-19628 | Remote Code Execution | HIGH | 2.10% | Aug 14, 2026 |
| CVE-2026-19626 | Remote Code Execution | CRITICAL | 1.85% | Aug 14, 2026 |
| CVE-2026-64881 | Command Injection | HIGH | 2.23% | Jul 21, 2026 |
| CVE-2026-64880 | Blind SQL Injection | HIGH | 0.32% | Jul 21, 2026 |
| CVE-2026-64879 | Command Injection | CRITICAL | 2.26% | Jul 21, 2026 |
| CVE-2026-64878 | Command Injection | CRITICAL | 0.80% | Jul 21, 2026 |
| CVE-2026-64877 | An authenticated non-admin user can exploit a SQL injection flaw in the ticketing REST API to access sensitive data stored in the appliance database. | CRITICAL | 0.32% | Jul 21, 2026 |
| CVE-2026-2698 | Improper Access Control | MEDIUM | 0.37% | Feb 23, 2026 |
| CVE-2026-2697 | Indirect Object Reference (IDOR) in Security Center | LOW | 0.38% | Feb 23, 2026 |
| CVE-2026-2630 | [R1] Stand-alone Security Patches Available for Tenable Security Center versions 6.5.1, 6.6.0 and 6.7.2: SC-202602.1 + SC-202602.2 | HIGH | 1.76% | Feb 17, 2026 |
| CVE-2025-36636 | Improper Access Control | MEDIUM | 0.19% | Oct 8, 2025 |
| CVE-2024-12174 | An Improper Certificate Validation vulnerability exists in Tenable Security Center where an authenticated, privileged attacker could intercept email messages s… | LOW | 0.18% | Dec 9, 2024 |
| CVE-2024-5759 | Improper privilege management | MEDIUM | 0.30% | Jun 12, 2024 |
| CVE-2024-1891 | Stored Cross Site Scripting | MEDIUM | 0.30% | Jun 12, 2024 |
| CVE-2024-1471 | HTML Injection Vulnerability | MEDIUM | 0.41% | Feb 14, 2024 |
| CVE-2024-1367 | Command Injection Vulnerability in Tenable Security Center | HIGH | 1.56% | Feb 14, 2024 |
Showing 1 to 25 of 32 CVEs