CVE-2026-19628EPSS p81.1%

CVE-2026-19628CVE-2026-19628

tenable / security_center

Description

A command injection vulnerability exists in Tenable Security Center. An authenticated administrator could modify application configuration values to achieve arbitrary command execution on the underlying operating system when specific backend operations are triggered.

Scoring

CVSS 7.2 ()
VectorCVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
EPSS2.10% probability of exploitation · percentile 81.1% · 2026-10-05T12:00:23Z
Last modified2026-08-19
Sourced from NVD + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.