Vulnerabilities > CVE-2021-44049 - Exposure of Resource to Wrong Sphere vulnerability in Cyberark Endpoint Privilege Manager

047910
CVSS 6.9 - MEDIUM
Attack vector
LOCAL
Attack complexity
MEDIUM
Privileges required
NONE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE

Summary

CyberArk Endpoint Privilege Manager (EPM) through 11.5.3.328 before 2021-12-20 allows a local user to gain elevated privileges via a Trojan horse Procmon64.exe in the user's Temp directory.

Vulnerable Configurations

Part Description Count
Application
Cyberark
2

Common Weakness Enumeration (CWE)