First published: Sat Jan 15 2022(Updated: )
CyberArk Endpoint Privilege Manager (EPM) through 11.5.3.328 before 2021-12-20 allows a local user to gain elevated privileges via a Trojan horse Procmon64.exe in the user's Temp directory.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
CyberArk Endpoint Privilege Manager | >=11.5.3.328<11.5.4.355 | |
CyberArk Endpoint Privilege Manager | >=11.5.3.328<11.5.4.500 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-44049 is a vulnerability that affects CyberArk Endpoint Privilege Manager (EPM) through version 11.5.3.328.
CVE-2021-44049 has a severity rating of 7.8 (High).
CVE-2021-44049 allows a local user to gain elevated privileges by utilizing a Trojan horse Procmon64.exe in the user's Temp directory.
CVE-2021-44049 affects versions of CyberArk Endpoint Privilege Manager from 11.5.3.328 to 11.5.4.355 on Windows, and from 11.5.3.328 to 11.5.4.500 on macOS.
To mitigate the risk posed by CVE-2021-44049, it is recommended to update CyberArk Endpoint Privilege Manager to version 11.5.4.355 on Windows or version 11.5.4.500 on macOS.