CVE-2025-36640
Unknown Unknown - Not Provided
Privilege Escalation in Nessus Agent Tray App Installation on Windows

Publication date: 2026-01-13

Last updated on: 2026-01-13

Assigner: Tenable Network Security, Inc.

Description
A vulnerability has been identified in the installation/uninstallation of the Nessus Agent Tray App on Windows Hosts which could lead to escalation of privileges.
CVSS Scores
EPSS Scores
Probability:
Percentile:
Meta Information
Published
2026-01-13
Last Modified
2026-01-13
Generated
2026-05-27
AI Q&A
2026-01-14
EPSS Evaluated
2026-05-25
NVD
EUVD
Affected Vendors & Products
Showing 2 associated CPEs
Vendor Product Version / Range
tenable nessus_agent to 10.9.3 (exc)
tenable nessus_agent From 11.0.0 (inc) to 11.0.2 (inc)
Helpful Resources
Exploitability
CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-269 The product does not properly assign, modify, track, or check privileges for an actor, creating an unintended sphere of control for that actor.
Attack-Flow Graph
AI Powered Q&A
Can you explain this vulnerability to me?

This vulnerability affects the installation and uninstallation process of the Nessus Agent Tray App on Windows hosts. It allows an attacker with local access and low privileges to escalate their privileges, potentially gaining higher-level access on the affected system. The issue exists in Nessus Agent versions prior to 10.9.3 and versions 11.0.0 through 11.0.2. [1]


How can this vulnerability impact me? :

The vulnerability can lead to privilege escalation on Windows hosts running the affected Nessus Agent Tray App versions. This means an attacker with limited access could gain elevated privileges, potentially compromising the confidentiality, integrity, and availability of the system and its data. [1]


How can this vulnerability be detected on my network or system? Can you suggest some commands?

Detection can be performed by identifying Nessus Agent versions installed on Windows hosts. Specifically, check if the version is prior to 10.9.3 or between 11.0.0 and 11.0.2, which are vulnerable. Commands to check the installed Nessus Agent version on Windows include: 1) Using PowerShell: Get-ItemProperty 'HKLM:\Software\Tenable\Nessus Agent' | Select-Object -ExpandProperty Version 2) Using Command Prompt: sc qc "NessusAgent" and check the version information. If the version matches the vulnerable range, the system is affected. [1]


What immediate steps should I take to mitigate this vulnerability?

The immediate mitigation step is to upgrade the Nessus Agent on all affected Windows hosts to version 10.9.3 or later, or to version 11.0.3 or later, as these versions contain the fix for the vulnerability. Tenable strongly recommends applying these updates promptly to prevent privilege escalation risks. [1]


Ask Our AI Assistant
Need more information? Ask your question to get an AI reply (Powered by our expertise)
0/70
EPSS Chart