CVE-2026-87024: Tanium addressed a SQL injection vulnerability in Asset.
Published Sep 16, 2026
·Updated
Tanium addressed a SQL injection vulnerability in Asset.
Affected Software
1 affected component
Tanium Asset
Event History
Sep 16, 2026
CVE Published
via MITRE·07:41 PM
Data Sourced
via MITRE·07:41 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What does an attacker need to exploit this issue?
The attacker needs network access to the affected Tanium Asset deployment and low-level privileges. No user interaction is required, but the attack complexity is rated high.
2
What could a successful exploit allow?
A successful exploit could have high impact on confidentiality, integrity, and availability within the vulnerable component's security scope.