HarborGuard / CVE
Back to search
HIGHCVE-2026-2914Published Modified CNA palo_alto

CVE-2026-2914: CyberArk Endpoint Privilege Manager Agent versions 25

CyberArk Endpoint Privilege Manager Agent versions 25.10.0 and lower allow potential unauthorized privilege elevation leveraging CyberArk elevation dialogs

Metrics

CVSS v4.0
8.5
Severity
HIGH
Fixed in
25.12
Affected Products
1

Fix available

25.12
Affected packages
  • CyberArk Software, a Palo Alto Networks Company / Endpoint Privilege Manager Agent
    < 25.12 (from 25.10)
CVSS Vector
CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N