VYPR

Privileged Session Manager

by Cyber Ark

CVEs (3)

  • CVE-2026-45171CriJun 11, 2026
    risk 0.60cvss epss

    Incomplete input validation and improperly configured folder permissions within Idira Privileged Session Manager (PSM) versions prior to 15.0.3, 14.6.3, 14.2.5, and 14.0.5, an authenticated, low-privileged user could potentially execute arbitrary code. CyberArk Security…

  • CVE-2026-45172HigJun 11, 2026
    risk 0.57cvss epss

    Due to incomplete input validation in Idira Privileged Session Manager for SSH (PSMP) versions prior to 15.0.2, 14.6.3, 14.2.5, and 14.0.6, an authenticated, low-privileged user could potentially execute arbitrary commands on the PSMP host. CyberArk Security Bulletins: CA26-17…

  • CVE-2020-25374Oct 28, 2020
    risk 0.00cvss epss 0.00

    CyberArk Privileged Session Manager (PSM) 10.9.0.15 allows attackers to discover internal pathnames by reading an error popup message after two hours of idle time.