Vulnerabilities
Vulnerable Software
Cyberark:  Security Vulnerabilities
CyberArk - CWE-200: Exposure of Sensitive Information to an Unauthorized Actor
CVSS Score
4.3
EPSS Score
0.003
Published
2024-08-25
CyberArk - CWE-200: Exposure of Sensitive Information to an Unauthorized Actor
CVSS Score
4.3
EPSS Score
0.003
Published
2024-08-25
In CyberArk Viewfinity 5.5.10.95 and 6.x before 6.1.1.220, a low privilege user can escalate to an administrative user via a bug within the "add printer" option.
CVSS Score
7.8
EPSS Score
0.01
Published
2023-05-03
CyberArk Identity versions up to and including 22.1 in the 'StartAuthentication' resource, exposes the response header 'X-CFY-TX-TM'. In certain configurations, that response header contains different, predictable value ranges which can be used to determine whether a user exists in the tenant.
CVSS Score
5.3
EPSS Score
0.011
Published
2022-03-03
CyberArk Endpoint Privilege Manager (EPM) through 11.5.3.328 before 2021-12-20 allows a local user to gain elevated privileges via a Trojan horse Procmon64.exe in the user's Temp directory.
CVSS Score
7.8
EPSS Score
0.004
Published
2022-01-15
An inadequate encryption vulnerability discovered in CyberArk Credential Provider before 12.1 may lead to Information Disclosure. An attacker may realistically have enough information that the number of possible keys (for a credential file) is only one, and the number is usually not higher than 2^36.
CVSS Score
7.5
EPSS Score
0.018
Published
2021-09-02
The effective key space used to encrypt the cache in CyberArk Credential Provider prior to 12.1 has low entropy, and under certain conditions a local malicious user can obtain the plaintext of cache files.
CVSS Score
4.4
EPSS Score
0.004
Published
2021-09-02
The user identification mechanism used by CyberArk Credential Provider prior to 12.1 is susceptible to a local host race condition, leading to password disclosure.
CVSS Score
5.1
EPSS Score
0.003
Published
2021-09-02
CyberArk Identity 21.5.131, when handling an invalid authentication attempt, sometimes reveals whether the username is valid. In certain authentication policy configurations with MFA, the API response length can be used to differentiate between a valid user and an invalid one (aka Username Enumeration). Response differentiation enables attackers to enumerate usernames of valid application users. Attackers can use this information to leverage brute-force and dictionary attacks in order to discover valid account information such as passwords.
CVSS Score
5.3
EPSS Score
0.009
Published
2021-09-01
CyberArk Endpoint Privilege Manager (EPM) 11.1.0.173 allows attackers to bypass a Credential Theft protection mechanism by injecting a DLL into a process that normally has credential access, such as a Chrome process that reads credentials from a SQLite database.
CVSS Score
5.5
EPSS Score
0.004
Published
2020-11-27


Contact Us

Shodan ® - All rights reserved