Impact
The vulnerability in Tanium Threat Response permits an attacker to inadvertently read sensitive system information, exposing confidential data without changing the system state. The weakness maps to unchecked access controls that allow data leakage; it is categorized as CWE‑200 and does not grant the attacker further system control or executable privileges.
Affected Systems
Tanium Threat Response is affected. Version information is not specified in the advisory.
Risk and Exploitability
The CVSS score of 2.7 reflects a low‑severity risk. EPSS data is not available, and the vulnerability is not listed in the CISA KEV catalog, suggesting the exploit probability is low. The attack vector is not detailed in the advisory, so the exact conditions for exploitation cannot be confirmed, but the impact is limited to confidentiality exposure.
OpenCVE Enrichment