CyberRota Analysis
AI-GeneratedA privilege escalation vulnerability in Tenable Security Center allows users with the "Security Manager" role and "manage user" permission to modify users across different groups, circumventing access control restrictions. This could lead to unauthorized user management and potential compromise of sensitive data or system integrity. Organizations utilizing Tenable Security Center should prioritize addressing this issue to mitigate risks associated with unauthorized access and user manipulation.
Original NVD Description
A privilege escalation vulnerability exists in Tenable Security Center that allows a user with "Security Manager" role and "manage user" permission on a single group to modify users belonging to other groups. This bypasses the intended access control restrictions and enables unauthorized cross-group user management.