First published: Mon Feb 03 2025(Updated: )
PVWA (Password Vault Web Access) in CyberArk Privileged Access Manager Self-Hosted before 14.4 has potentially elevated privileges in LDAP mapping.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
CyberArk Privileged Access Manager | <14.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-57967 is classified with a high severity due to the potential for elevated privileges in LDAP mapping within CyberArk Privileged Access Manager.
To fix CVE-2024-57967, upgrade to CyberArk Privileged Access Manager Self-Hosted version 14.4 or later.
The potential impacts of CVE-2024-57967 include unauthorized access and potential privilege escalation in the system.
CVE-2024-57967 affects CyberArk Privileged Access Manager Self-Hosted versions prior to 14.4.
There are currently no official workarounds for CVE-2024-57967, hence upgrading is recommended.