CVE-2026-33694
EUVD-2026-2526523.04.2026, 19:17
This vulnerability allows an attacker to create a junction, enabling the deletion of arbitrary files with SYSTEM privileges. As a result, this condition potentially facilitates arbitrary code execution, whereby an attacker may exploit the vulnerability to execute malicious code with elevated SYSTEM privileges.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| tenable | nessus | 𝑥 ≤ 10.11.3 |
| tenable | nessus_agent | 𝑥 ≤ 11.1.2 |
𝑥
= Vulnerable software versions