CVE-2026-9207: Tanium addressed an unauthorized code execution vulnerability in Connect.
Tanium addressed an unauthorized code execution vulnerability in Connect.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Operational
Apply the vendor-supplied update/patch for Tanium Connect that addresses the unauthorized code execution vulnerability.
Event History
Frequently Asked Questions
What is the severity of CVE-2026-9207?
The severity of CVE-2026-9207 is high, with a CVSS score of 8.8.
How does CVE-2026-9207 affect Tanium Module Server?
CVE-2026-9207 allows for command injection, which can lead to privilege escalation on the Tanium Module Server.
What type of vulnerability is CVE-2026-9207 classified as?
CVE-2026-9207 is classified as an OS Command Injection vulnerability.
How can I fix CVE-2026-9207?
To fix CVE-2026-9207, update your Tanium Module Server to the latest version released by Tanium that addresses this vulnerability.
What is the potential impact of CVE-2026-9207?
The potential impact of CVE-2026-9207 includes unauthorized code execution and escalation of privileges on affected systems.