CyberArk Endpoint Privilege Manager Agent through 25.10.0 allows a local user to achieve privilege escalation through policy elevation of an Administration task.
References
| Link | Resource |
|---|---|
| https://docs.cyberark.com/epm/latest/en/content/release%20notes/rn-whatsnew25-12.htm#Security | Release Notes |
| https://www.cyberark.com/ca26-01 | Permissions Required |
| https://www.cyberark.com/product-security/ | Vendor Advisory |
Configurations
History
No history.
Information
Published : 2026-02-03 18:16
Updated : 2026-02-28 04:16
NVD link : CVE-2025-66374
Mitre link : CVE-2025-66374
CVE.ORG link : CVE-2025-66374
JSON object : View
Products Affected
cyberark
- endpoint_privilege_manager
CWE
