CVE-2026-64878
EUVD-2026-4638821.07.2026, 20:17
Unvalidated input in asset filter parameters allows shell metacharacters to escape command argument handling, resulting in remote code execution as a low-privileged OS user via the Analysis REST endpoint.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| tenable | security_center | 6.6.0 ≤ 𝑥 ≤ 6.8.0 |
𝑥
= Vulnerable software versions