---
id: CVE-2025-43079
title: >-
  The Qualys Cloud Agent included a bundled uninstall script
  (qagent_uninstall.sh), specific to Mac and Linux supported versions that
  invoked multiple system commands without using absolute paths and without
  sanitizing the $PATH environmen…
summary: >-
  The Qualys Cloud Agent included a bundled uninstall script
  (qagent_uninstall.sh), specific to Mac and Linux supported versions that
  invoked multiple system commands without using absolute paths and without
  sanitizing the $PATH environmen…
severity: medium
cvss: 6.3
cvssVector: 'CVSS:3.1/AV:L/AC:H/PR:H/UI:R/S:U/C:H/I:H/A:H'
cwe:
  - CWE-426
published: '2025-11-10'
updated: '2026-10-07'
sourceUpdated: '2026-10-07T21:10:00.200'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2025-43079'
references:
  - url: 'https://www.qualys.com/security-advisories/cve-2025-43079'
    label: bugreport@qualys.com
tags:
  - nvd
epss: 0.00162
epssPercentile: 0.04829
ingestedAt: '2026-10-07T21:54:15.003Z'
---

## Overview

The Qualys Cloud Agent included a bundled uninstall script (qagent_uninstall.sh), specific to Mac and Linux supported versions that invoked multiple system commands without using absolute paths and without sanitizing the $PATH environment. If the uninstall script is executed with elevated privileges (e.g., via sudo) in an environment where $PATH has been manipulated, an attacker with root/sudo privileges could cause malicious executables to be run in place of the intended system binaries. This behavior can be leveraged for local privilege escalation and arbitrary command execution under elevated privileges.

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
