In Tenable Agent versions prior to 10.8.5 on a Windows host, it was found that a non-administrative user could overwrite arbitrary local system files with log content at SYSTEM privilege.
https://www.securityweek.com/high-severity-vulnerabilities-patched-in-tenable-nessus-agent/