Home
MEDIUM: 6.3 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:LLOW: 2.1 CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:PDefault status
affected
Any version before 6.8.0
affected
Description
An Indirect Object Reference (IDOR) in Security Center allows an authenticated remote attacker to escalate privileges via the 'owner' parameter.
Problem types
CWE-639: Authorization Bypass Through User-Controlled Key
Product status
Any version before 6.8.0
References
www.tenable.com/security/tns-2026-07