← Back to CVE search

CVE-2026-40144

BeyondTrust Endpoint Privilege Management

Description

A memory-corruption vulnerability exists in a kernel-mode component of BeyondTrust Endpoint Privilege Management (Windows deployments) prior to version 26.1.2. Insufficient validation of input processed by the component may result in memory being accessed outside its intended bounds.

CVSS 7.3EPSS 0.11900000000000001%Risk 0.74
View source
Published
2026-08-17 16:16:56
Affected versions
<26.1.2
Type
Critical software
Last modified
2026-08-18 15:04:46
Vector
CVSS:4.0/AV:L/AC:H/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X