CVE-2026-4433

EUVD-2026-15025
An SSH misconfigurations exists in Tenable OT that led to the potential exfiltration of socket, port, and service information via the ostunnel user and GatewayPorts. This could be used to potentially glean information about the underlying system and give an attacker information that could be used to attempt to compromise the host.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
4.3 MEDIUM
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N
Base Score
CVSS 3.x
EPSS Score
Percentile: 17.57%
Affected Products (NVD)
VendorProductVersion
tenableoperational_technology_exposure
3.18.58 ≤
𝑥
< 4.2.40
𝑥
= Vulnerable software versions
Common Weakness Enumeration