Tanium Appliance Improper Certificate Validation Vulnerability Allowing Log Data Interception

Vulnerability

An improper certificate validation vulnerability has been addressed in Tanium Appliance. This vulnerability could enable an unauthenticated, network-based attacker to view or modify log data when a remote syslog destination is configured to use TLS. The issue is present in Tanium Appliance versions prior to Update 24 (v1.8.3.0199) in the 2024H1 release, prior to Update 12 (v1.8.4.0205) in the 2024H2 release, and prior to Update 6 (v1.8.5.0236) in the 2025H1 release.

Impact

Exploitation of this vulnerability could allow for unauthorized viewing or modification of log data sent to a remote syslog destination over TLS.

Remediation

Users can update to Tanium Appliance version 1.8.3.0199 or later for the 2024H1 release, version 1.8.4.0205 or later for the 2024H2 release, and version 1.8.5.0236 or later for the 2025H1 release.

Added: Feb 5, 2026, 7:33 PM
Updated: Feb 5, 2026, 9:00 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
5.0
exploitability
6.2
remediation
0.0
relevance
2.5
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.