PatchSiren cyber security CVE debrief
CVE-2019-25747 Network Inventory Advisor CVE debrief
CVE-2019-25747 is a high-severity vulnerability in Network Inventory Advisor 5.0.26.0 that allows local attackers to escalate privileges by placing malicious executables in intermediate directories due to an unquoted binary path in the niaservice service configuration. The vulnerability has a CVSS score of 8.5 and is considered high priority. Defenders should assess their exposure and take immediate action to mitigate the risk.
- Vendor
- Network Inventory Advisor
- Product
- Network Inventory Advisor 5.0.26.0
- CVSS
- HIGH 8.5
- CISA KEV
- Not listed in stored evidence
- Original CVE published
- 2026-06-19
- Original CVE updated
- 2026-06-22
- Advisory published
- 2026-06-19
- Advisory updated
- 2026-06-22
Who should care
System administrators and security teams responsible for managing Network Inventory Advisor installations should be aware of this vulnerability and take steps to mitigate it. Additionally, organizations using Network Inventory Advisor 5.0.26.0 or earlier versions should prioritize patching or applying workarounds to prevent potential privilege escalation attacks.
Technical summary
The Network Inventory Advisor 5.0.26.0 installs the niaservice service with an unquoted binary path, allowing local attackers to escalate privileges by placing malicious executables in intermediate directories. The vulnerability is caused by the unquoted path in the service configuration, which enables attackers to execute arbitrary code with LocalSystem privileges when the service starts or restarts.
Defensive priority
High priority due to high CVSS score and potential for privilege escalation
Recommended defensive actions
- Inventory affected systems and prioritize patching or applying workarounds
- Review and update the niaservice service configuration to use a quoted binary path
- Implement compensating controls to monitor and restrict access to sensitive directories
- Apply vendor-supported remediation or patches as available
- Monitor for suspicious activity and track exceptions
Evidence notes
The primary evidence for this vulnerability is the unquoted binary path in the niaservice service configuration. Defenders should verify the service configuration and check for any malicious executables in intermediate directories. The vulnerability affects Network Inventory Advisor 5.0.26.0 and earlier versions.
Official resources
This article is AI-assisted and based on the supplied source corpus.