PatchSiren

PatchSiren cyber security CVE debrief

CVE-2019-25747 Network Inventory Advisor CVE debrief

CVE-2019-25747 is a high-severity vulnerability in Network Inventory Advisor 5.0.26.0 that allows local attackers to escalate privileges by placing malicious executables in intermediate directories due to an unquoted binary path in the niaservice service configuration. The vulnerability has a CVSS score of 8.5 and is considered high priority. Defenders should assess their exposure and take immediate action to mitigate the risk.

Vendor
Network Inventory Advisor
Product
Network Inventory Advisor 5.0.26.0
CVSS
HIGH 8.5
CISA KEV
Not listed in stored evidence
Original CVE published
2026-06-19
Original CVE updated
2026-06-22
Advisory published
2026-06-19
Advisory updated
2026-06-22

Who should care

System administrators and security teams responsible for managing Network Inventory Advisor installations should be aware of this vulnerability and take steps to mitigate it. Additionally, organizations using Network Inventory Advisor 5.0.26.0 or earlier versions should prioritize patching or applying workarounds to prevent potential privilege escalation attacks.

Technical summary

The Network Inventory Advisor 5.0.26.0 installs the niaservice service with an unquoted binary path, allowing local attackers to escalate privileges by placing malicious executables in intermediate directories. The vulnerability is caused by the unquoted path in the service configuration, which enables attackers to execute arbitrary code with LocalSystem privileges when the service starts or restarts.

Defensive priority

High priority due to high CVSS score and potential for privilege escalation

Recommended defensive actions

  • Inventory affected systems and prioritize patching or applying workarounds
  • Review and update the niaservice service configuration to use a quoted binary path
  • Implement compensating controls to monitor and restrict access to sensitive directories
  • Apply vendor-supported remediation or patches as available
  • Monitor for suspicious activity and track exceptions

Evidence notes

The primary evidence for this vulnerability is the unquoted binary path in the niaservice service configuration. Defenders should verify the service configuration and check for any malicious executables in intermediate directories. The vulnerability affects Network Inventory Advisor 5.0.26.0 and earlier versions.

Official resources

This article is AI-assisted and based on the supplied source corpus.