When installing Nessus Agent to a non-default location on...
High severity
Unreviewed
Published
Mar 21, 2025
to the GitHub Advisory Database
•
Updated Mar 21, 2025
Description
Published by the National Vulnerability Database
Mar 21, 2025
Published to the GitHub Advisory Database
Mar 21, 2025
Last updated
Mar 21, 2025
When installing Nessus Agent to a non-default location on a Windows host, Nessus Agent versions prior to 10.8.3 did not enforce secure permissions for sub-directories. This could allow for local privilege escalation if users had not secured the directories in the non-default installation location.
References