CVE-2026-86865: Tanium addressed a SQL injection vulnerability in Asset.
Published Sep 16, 2026
·Updated
Tanium addressed a SQL injection vulnerability in Asset.
Affected Software
1 affected component
Tanium Asset
Event History
Sep 16, 2026
CVE Published
via MITRE·07:41 PM
Data Sourced
via MITRE·07:41 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What access does an attacker need to exploit this issue?
The attacker needs network access to the affected Tanium Asset deployment and low-level privileges. No user interaction is required.
2
What could successful exploitation allow?
The vulnerability is rated high severity with high impact to confidentiality, integrity, and availability. Successful exploitation could therefore affect all three of those security properties.