CyberSec.Space Logo
CVEブラウザに戻る

CVE-2018-9843

CRITICAL
9.8
CVSS Severity Score
EPSS Score0.1570%
EPSS Percentile9.68th
Published2018年4月12日
Last Modified2024年11月21日

Vulnerability Description

The REST API in CyberArk Password Vault Web Access before 9.9.5 and 10.x before 10.1 allows remote attackers to execute arbitrary code via a serialized .NET object in an Authorization HTTP header.

Affected Platforms (CPE)

📦
Cyberark

Password Vault

< 9.9.5
📦
Cyberark

Password Vault

>= 10.0 and < 10.1

References & Advisories

関連する脆弱性情報