A vulnerability in Nessus Network Monitor versions 5.11.0, 5.11.1, and 5.12.0 for Windows could allow an authenticated local attacker to execute arbitrary code by copying user-supplied files to a specially constructed path in a specifically named user directory. The attacker needs valid credentials on the Windows system to exploit this vulnerability.
| Software | From | Fixed in |
|---|---|---|
| tenable / nessus_network_monitor | 5.11.0 | 5.11.0.x |
| tenable / nessus_network_monitor | 5.11.1 | 5.11.1.x |
| tenable / nessus_network_monitor | 5.12.0 | 5.12.0.x |