VYPR

Core Privileged Access Manager (BoKS)

by Fortra

CVEs (2)

  • CVE-2026-9862CriJun 15, 2026
    risk 0.64cvss 9.8epss

    Fortra's  Core Privileged Access Manager (BoKS) contains an OS command injection vulnerability in the boks_autoregisterd service. A remote attacker with network access to the service may be able to cause commands to be executed with the privileges of the service during the…

  • CVE-2025-5141MedJun 17, 2025
    risk 0.36cvss 5.5epss 0.00

    A binary in the BoKS Server Agent component of Fortra's Core Privileged Access Manager (BoKS) on versions 7.2.0 (up to 7.2.0.17), 8.1.0 (up to 8.1.0.22), 8.1.1 (up to 8.1.1.7), 9.0.0 (up to 9.0.0.1) and also legacy tar installs of BoKS 7.2 without hotfix #0474 on Linux, AIX, and…