CVE-2025-15337: Tanium addressed an incorrect default permissions vulnerability in Patch.
Published Feb 5, 2026
·Updated
Tanium addressed an incorrect default permissions vulnerability in Patch.
Affected Software
3 affected components
Tanium Patch>=3.17.0<3.17.2300
Tanium Patch>=3.19.0<3.19.232
Tanium Patch>=3.24.0<3.24.137
Event History
Feb 5, 2026
CVE Published
via MITRE·06:16 PM
Data Sourced
via MITRE·06:16 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·07:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-15337?
The severity of CVE-2025-15337 is classified as a medium severity vulnerability due to incorrect default permissions.
2
How do I fix CVE-2025-15337?
To fix CVE-2025-15337, update Tanium Patch to a version later than 3.24.137, 3.19.232, or 3.17.2300 as specified in the vendor's advisory.
3
What software versions are affected by CVE-2025-15337?
CVE-2025-15337 affects Tanium Patch versions from 3.17.0 to 3.17.2300, from 3.19.0 to 3.19.232, and from 3.24.0 to 3.24.137.
4
What type of vulnerability is CVE-2025-15337?
CVE-2025-15337 is categorized as an incorrect default permissions vulnerability that could allow unauthorized access.
5
Can CVE-2025-15337 be exploited remotely?
Yes, CVE-2025-15337 can potentially be exploited remotely due to the default permissions issue in the affected software.