CVE-2026-45176 PUBLISHED

Idira Endpoint Privilege Manager Agent: Local Privilege Escalation via Internal Communication or File Operation Manipulation

Assigner: palo_alto
Reserved: 08.05.2026 Published: 11.06.2026 Updated: 11.06.2026

Idira Endpoint Privilege Manager Agent versions prior to 26.5 exhibit improper access control within high-privileged agent components. A local, low-privileged attacker could exploit this by manipulating an internal communication mechanism or file operation. Under specific circumstances, this could potentially allow the attacker to bypass permission restrictions and execute unauthorized local actions with elevated privileges. CyberArk Security Bulletin: CA26-19

Metrics

CVSS Vector: CVSS:4.0/AV:L/AC:H/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H/U:Amber
CVSS Score: 8.9

Product Status

Vendor CyberArk Software, a Palo Alto Networks Company
Product Idira Endpoint Privilege Manager
Versions Default: unaffected
  • affected from 26.0 to 26.5 (excl.)

Exploits

Palo Alto Networks is not aware of any malicious exploitation of this issue.

Credits

  • Palo Alto Networks thanks our internal security research teams for discovering and reporting this issue finder

References

Problem Types

  • [Discouraged] CWE-269: Improper Privilege Management CWE

Impacts

  • CAPEC-233 Privilege Escalation