PT-2025-46178 · Qualys · Qualys Cloud Agent

Brent Zaltsman

·

Published

2025-11-10

·

Updated

2025-11-17

·

CVE-2025-43079

CVSS v3.1

6.3

Medium

VectorAV:L/AC:H/PR:H/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Qualys Cloud Agent (affected versions not specified)
Description The Qualys Cloud Agent includes an uninstall script (qagent uninstall.sh) for MacOS and Linux that invokes system commands without specifying absolute paths or sanitizing the $PATH environment. If executed with elevated privileges (e.g., using sudo) in a compromised environment where the $PATH variable has been manipulated, an attacker with root or sudo privileges could potentially execute malicious executables instead of intended system binaries. This could lead to local privilege escalation and arbitrary command execution with elevated privileges.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

LPE

Untrusted Search Path

Incorrect Permission

Weakness Enumeration

Related Identifiers

CVE-2025-43079

Affected Products

Qualys Cloud Agent