CVE-2026-2026

Description

A vulnerability has been identified where weak file permissions in the Nessus Agent directory on Windows hosts could allow unauthorized access, potentially permitting Denial of Service (DoS) attacks.

Risk Information

Base Score
6.1
MODERATE
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:H
EPSS Score
Exploitation Probability
0.011

Associated Vulnerability

VulnerabilityOS Platform
Vulnerabilities CVE-2026-2026 are fixed in Nessus Agent (x64) (11.1.2) (Manual Upload Required)Windows
Vulnerabilities CVE-2026-2026 are fixed in Nessus Agent 11.0.4Windows

Patch Details

Click to see the patches provided by ManageEngine for this CVE
Patch IDPatch Description
PATCH-356162Nessus Agent (x64) (11.1.2) (Manual Upload Required)

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234