High severity7.8NVD Advisory· Published Jan 15, 2022· Updated Jun 17, 2026
CVE-2021-44049
CVE-2021-44049
Description
CyberArk Endpoint Privilege Manager (EPM) through 11.5.3.328 before 2021-12-20 allows a local user to gain elevated privileges via a Trojan horse Procmon64.exe in the user's Temp directory.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
5cpe:2.3:a:cyberark:endpoint_privilege_manager:*:*:*:*:*:macos:*:*+ 1 more
- cpe:2.3:a:cyberark:endpoint_privilege_manager:*:*:*:*:*:macos:*:*range: >=11.5.3.328,<11.5.4.500
- cpe:2.3:a:cyberark:endpoint_privilege_manager:*:*:*:*:*:windows:*:*range: >=11.5.3.328,<11.5.4.355
- CyberArk/Endpoint Privilege Manager (EPM)description
- Range: <=11.5.3.328
Patches
Vulnerability mechanics
References
4- hencohen10.medium.com/cyberark-endpoint-manager-local-privilege-escalation-cve-2021-44049-67cd5e62c3d2nvdExploitThird Party Advisory
- docs.cyberark.com/Product-Doc/OnlineHelp/EPM-onprem/Latest/en/Content/Release%20Notes/RN-WhatsNew.htmnvdVendor Advisory
- www.cyberark.com/ca21-34/nvdPermissions RequiredVendor Advisory
- www.cyberark.com/product-security/nvdVendor Advisory
News mentions
0No linked articles in our index yet.