Back to Database
Status published
Medium
CVE-2010-2989
nessusd_www_server.nbin in the Nessus Web Server plugin 1.2.4 for Nessus...
Vulnerability Description
nessusd_www_server.nbin in the Nessus Web Server plugin 1.2.4 for Nessus allows remote attackers to obtain sensitive information via a request to the /feed method, which reveals the version in a response.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2010-2989
Credits & Attribution
No credits recorded in the NVD database.
References
More from nessus
View All →CVE-2010-2914
Cross-site scripting (XSS) vulnerability in nessusd_www_server.nbin in the Nessus Web...
Medium
4.3
CVE-2007-4062
The SCANCTRL.ScanCtrlCtrl.1 ActiveX control in scan.dll in Nessus Vulnerability Scanner...
High
7.8
CVE-2007-4061
Directory traversal vulnerability in a certain ActiveX control in Nessus...
Critical
9.3
CVE-2007-4031
Directory traversal vulnerability in a certain ActiveX control in Nessus...
High
7.8
CVE-2007-3546
Cross-site scripting (XSS) vulnerability in the Windows GUI in Nessus...
Medium
4.3
Affected Vendor
nessus
View all reports →Affected Software
web server plugin
Vulnerable Versions:
1.2.4
Timeline
Official Publish:
August 9th, 2010
Last Modified:
August 7th, 2024
Added to House:
July 19th, 2026
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.