CVE-2025-15343 is a medium-severity vulnerability affecting Tanium Enforce, stemming from incorrect default permissions (CWE-276). An attacker with high privileges could exploit this over a network to achieve high confidentiality and integrity impacts. While the CVSS score is 6.5, its FAUCET Risk Score is 87/100, indicating a higher practical risk. There is currently no evidence of active exploitation, public exploit code, or significant community discussion surrounding this vulnerability.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
>= 2.7.0, < 2.7.367CPE matchmatch criteria | cpe:2.3:a:tanium:enforce:*:*:*:*:*:*:*:* | ||
>= 2.8.0, < 2.8.601CPE matchmatch criteria | cpe:2.3:a:tanium:enforce:*:*:*:*:*:*:*:* | ||
>= 2.9.0, < 2.9.574CPE matchmatch criteria | cpe:2.3:a:tanium:enforce:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.