Home
HIGH: 8.5 CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:NDefault status
unaffected
25.10 (custom) before 25.12
affected
Description
CyberArk Endpoint Privilege Manager Agent versions 25.10.0 and lower allow potential unauthorized privilege elevation leveraging CyberArk elevation dialogs
Problem types
Insecure Permissions
Product status
25.10 (custom) before 25.12
Credits
CyberArk Software, a Palo Alto Networks Company thanks Christophe Rieunier - CERT La Poste for discovering this issue.
References
www.cyberark.com/product-security/
docs.cyberark.com/...content/release notes/release-notes.htm