Known Vulnerabilities for Endpoint Privilege Manager by Cyberark
Listed below are 6 of the newest known vulnerabilities associated with "Endpoint Privilege Manager" by "Cyberark".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-4003 json | The Users manager – PN plugin for WordPress is vulnerable to Privilege Escalation via Arbitrary User Meta Update in all ver... | Not Provided | 2026-04-08 | 2026-04-08 |
| CVE-2026-3107 json | Stored Cross-Site Scripting (XSS) in Teampass versions prior to 3.1.5.16, affecting the password manager's password import fu... | Not Provided | 2026-03-31 | 2026-03-31 |
| CVE-2024-2771 json | The Contact Form Plugin by Fluent Forms for Quiz, Survey, and Drag & Drop WP Form Builder plugin for WordPress is vulnerable ... | Not Provided | 2024-05-18 | 2026-04-08 |
| CVE-2021-44049 json | CyberArk Endpoint Privilege Manager (EPM) through 11.5.3.328 before 2021-12-20 allows a local user to gain elevated privilege... | 7.8 - HIGH | 2022-01-15 | 2022-07-12 |
| CVE-2020-25738 json | CyberArk Endpoint Privilege Manager (EPM) 11.1.0.173 allows attackers to bypass a Credential Theft protection mechanism by in... | 5.5 - MEDIUM | 2020-11-27 | 2020-12-04 |
| CVE-2019-9627 json | A buffer overflow in the kernel driver CybKernelTracker.sys in CyberArk Endpoint Privilege Manager versions prior to 10.7 all... | 7 - HIGH | 2019-03-08 | 2022-04-05 |
| CVE-2018-14894 json | CyberArk Endpoint Privilege Manager 10.2.1.603 and earlier allows an attacker (who is able to edit permissions of a file) to ... | 7.8 - HIGH | 2019-04-09 | 2019-10-03 |
| CVE-2018-13052 json | In CyberArk Endpoint Privilege Manager (formerly Viewfinity), Privilege Escalation is possible if the attacker has one proces... | 9.8 - CRITICAL | 2018-07-05 | 2019-10-03 |
| CVE-2018-12903 json | In CyberArk Endpoint Privilege Manager (formerly Viewfinity) 10.2.1.603, there is persistent XSS via an account name on the c... | 5.4 - MEDIUM | 2018-06-26 | 2018-08-30 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Cyberark | Endpoint Privilege Manager | 11.1.0.173 | |||
| Application | Cyberark | Endpoint Privilege Manager | 10.7 | |||
| Application | Cyberark | Endpoint Privilege Manager | 10.2.1.603 | |||
| Application | Cyberark | Endpoint Privilege Manager | - |