Executive brief
Tenable Security Center is a vulnerability management platform used by organizations to identify and manage security risks across their infrastructure. A privilege escalation flaw allows users with "Security Manager" role and "manage user" permissions on a single group to modify users in other groups, bypassing intended access controls. An attacker with this role could gain unauthorized access to sensitive user accounts and security functions across group boundaries.
Technical details
This is a privilege escalation vulnerability in Tenable Security Center's user management access control logic. A user with "Security Manager" role and "manage user" permission on a single group can modify or create users belonging to other groups due to improper validation of group-based access boundaries. The vulnerability requires authentication (PR:L) and no user interaction, making it a straightforward exploitation path for any authenticated user with the specified role. An attacker can achieve unauthorized user account manipulation, potentially leading to privilege escalation within the platform and access to sensitive vulnerability data. Tenable has released Security Center 6.9.0 as a fix.
Affected products
- Tenable Security Center before 6.9.0
Timeline
- 2026-08-14: disclosed
- 2026-08-14: patched: Fixed in Security Center 6.9.0