PT-2026-48702 · Cyberark · Idira Endpoint Privilege Manager

Published

2026-06-11

·

Updated

2026-06-11

·

CVE-2026-45176

CVSS v4.0

8.9

High

VectorAV:L/AC:H/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H/U:Amber
Idira Endpoint Privilege Manager Agent versions prior to 26.5 exhibit improper access control within high-privileged agent components. A local, low-privileged attacker could exploit this by manipulating an internal communication mechanism or file operation. Under specific circumstances, this could potentially allow the attacker to bypass permission restrictions and execute unauthorized local actions with elevated privileges. CyberArk Security Bulletin: CA26-19

Fix

Improper Privilege Management

Weakness Enumeration

Related Identifiers

CVE-2026-45176

Affected Products

Idira Endpoint Privilege Manager