CVE-2026-18667
Sensor Proxy Version 1.4.2 Fixes One Vulnerability
Description
A vulnerability in Tenable Sensor Proxy allows a remote attacker to execute code with elevated privileges by inducing an operator to connect the sensor to an attacker-controlled host.
In plain language
AI Act nowIf you run Tenable Sensor Proxy versions before 1.4.2, an attacker on the network may be able to take over the machine by tricking an operator into making a connection to a malicious server; small businesses should fix this urgently.
CVE-2026-18667 is a remote code execution weakness (CWE-94) in Tenable Sensor Proxy, where an attacker can achieve higher-privilege code execution by inducing an operator to connect the sensor to an attacker-controlled host; it requires no authentication.
What to do now
- Check your current Tenable Sensor Proxy version and confirm whether it is older than 1.4.2.
- If you are running a version before 1.4.2, plan an immediate upgrade to Sensor Proxy 1.4.2.
- Use the Tenable Downloads Portal to obtain the Sensor Proxy 1.4.2 installation files.
- After upgrading, verify Sensor Proxy services start normally and that the sensor can no longer be connected/redirected as it was before.
CVSS Vector Breakdown
AV:NAttack VectorAC:LAttack ComplexityPR:NPrivileges RequiredUI:RUser InteractionS:CScopeC:HConfidentialityI:HIntegrityA:HAvailabilityWeaknesses
Affected Products
Exploitability
Attack Graph
Click technique nodes for MITRE ATT&CK details · drag to pan · Ctrl/⌘ + scroll to zoom, or go fullscreen.
MITRE ATT&CK
2 techniquesReferences
Unlock Complete Vulnerability Intelligence
Get the full picture for CVE-2026-18667 and every CVE in our database. Create a free account — no credit card required.
Create Free Account