Impact
The vulnerability in Tanium Threat Response permits an attacker to read sensitive system information, exposing confidential data without changing the system state. Based on the description, it appears to involve unchecked access controls that could allow data leakage, but this is an inference. The CVE does not describe any privilege escalation or code execution, so the impact is limited to confidentiality exposure.
Affected Systems
Tanium Threat Response is affected; specific version information is not provided in the advisory.
Risk and Exploitability
The CVSS score of 2.7 reflects a low‑severity risk. An EPSS score of < 1% indicates a very low probability of exploitation, and the vulnerability is not listed in the CISA KEV catalog. The advisory does not detail the attack vector or conditions, so exact exploitation requirements remain unspecified.
OpenCVE Enrichment