CVE-2026-2026

MEDIUM

Nessus Agent - Privilege Escalation

Title source: llm
STIX 2.1

Description

A vulnerability has been identified where weak file permissions in the Nessus Agent directory on Windows hosts could allow unauthorized access, potentially permitting Denial of Service (DoS) attacks.

Scores

CVSS v3 6.1
EPSS 0.0001
EPSS Percentile 1.9%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-276
Status published
Products (1)
tenable/nessus_agent < 11.0.4
Published Feb 13, 2026
Tracked Since Feb 18, 2026