Local Privilege Escalation Vulnerability in Tanium Endpoint Configuration Toolset
CVE-2025-15319

7.8HIGH

Key Information:

Vendor

Tanium

Vendor
CVE Published:
9 February 2026

What is CVE-2025-15319?

A local privilege escalation vulnerability has been identified in Tanium's Endpoint Configuration Toolset, allowing unauthorized users to gain heightened privileges within the system. This security flaw could enable attackers to exploit the vulnerability to execute arbitrary code and access sensitive information, posing significant risks to organizations utilizing this software. It is essential for users to apply the latest patches and updates to mitigate potential security breaches.

Affected Version(s)

Patch Endpoint Tools 3.17.0 < 3.17.10207

Patch Endpoint Tools 10.1.0 < 10.1.50

Patch Endpoint Tools 10.7.0 < 10.7.25

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Owen Jeanes
.