CVE-2026-19635: Local Privilege Escalation
A local privilege escalation vulnerability exists in Security Center. An attacker with write access to a specific configuration file could achieve arbitrary code execution with elevated privileges, without requiring further user or victim interaction.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Tenable Security Centerto a version that resolves this vulnerability.Fixed in 6.9.0
Event History
Frequently Asked Questions
What is the severity of CVE-2026-19635?
The severity of CVE-2026-19635 is rated as high with a score of 8.8.
What type of vulnerability is CVE-2026-19635?
CVE-2026-19635 is identified as a local privilege escalation vulnerability.
How do I fix CVE-2026-19635?
To fix CVE-2026-19635, ensure that write access to the configuration file is restricted and apply any available security updates for Security Center.
What is the risk associated with CVE-2026-19635?
CVE-2026-19635 has a risk rating of 72, indicating a significant potential threat.
Can CVE-2026-19635 be exploited without user interaction?
Yes, CVE-2026-19635 can be exploited without requiring further user or victim interaction.