High severity7.8NVD Advisory· Published Feb 3, 2026· Updated Jun 17, 2026
CVE-2025-66374
CVE-2025-66374
Description
CyberArk Endpoint Privilege Manager Agent through 25.10.0 allows a local user to achieve privilege escalation through policy elevation of an Administration task.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- CyberArk/Endpoint Privilege Manager Agentdescription
- Range: <=25.10.0
- cpe:2.3:a:cyberark:endpoint_privilege_manager:*:*:*:*:*:windows:*:*Range: <=25.10.0
Patches
Vulnerability mechanics
References
3- www.cyberark.com/product-security/nvdVendor Advisory
- docs.cyberark.com/epm/latest/en/content/release%20notes/rn-whatsnew25-12.htmnvdRelease Notes
- www.cyberark.com/ca26-01nvdPermissions Required
News mentions
0No linked articles in our index yet.