Black & White Path
Jul 23, 2026 · Information Security
CVE-2026-57588: Analyzing the Nessus XML Import SQL Injection Vulnerability
The article dissects CVE-2026-57588, a high‑severity SQL injection in Tenable Nessus 10.12.0 and earlier, explaining how malicious .nessus XML files can execute arbitrary PostgreSQL queries when imported by an administrator, and provides remediation steps and a PoC script.
CVE-2026-57588ExploitInformation Security
0 likes · 11 min read
