Security Advisory

CVE-2025-24914

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2025-04-18 18:18:02
Last updated 2026-02-26 18:28:09
Assigner tenable
CVSS score 7.8
State PUBLISHED

Description

When installing Nessus to a non-default location on a Windows host, Nessus versions prior to 10.8.4 did not enforce secure permissions for sub-directories. This could allow for local privilege escalation if users had not secured the directories in the non-default installation location. - CVE-2025-24914