Search Results (2 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2026-45172 3 Cyberark, Cyberark Software A Palo Alto Networks Company, Paloaltonetworks 3 Privileged Session Manager, Pam Self-hosted Privilege Cloud, Idira Privileged Session Manager For Ssh 2026-06-12 8.8 High
Due to incomplete input validation in Idira Privileged Session Manager for SSH (PSMP) versions prior to 15.0.2, 14.6.3, 14.2.5, and 14.0.6, an authenticated, low-privileged user could potentially execute arbitrary commands on the PSMP host. CyberArk Security Bulletins: CA26-17 and CA26-18
CVE-2026-45171 3 Cyberark, Cyberark Software A Palo Alto Networks Company, Paloaltonetworks 3 Privileged Session Manager, Privileged Session Manager Vault, Idira Privileged Session Manager 2026-06-12 8.8 High
Incomplete input validation and improperly configured folder permissions within Idira Privileged Session Manager (PSM) versions prior to 15.0.3, 14.6.3, 14.2.5, and 14.0.5, an authenticated, low-privileged user could potentially execute arbitrary code. CyberArk Security Bulletin: CA26-17 and CA26-18