CyberArk Endpoint Privilege Manager (EPM) 11.1.0.173 allows attackers to bypass a Credential Theft protection mechanism by injecting a DLL into a process that normally has credential access, such as a Chrome process that reads credentials from a SQLite database.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2020-11-27T05:50:03

Updated: 2024-08-04T15:40:36.925Z

Reserved: 2020-09-17T00:00:00

Link: CVE-2020-25738

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2020-11-27T06:15:11.000

Modified: 2020-12-04T20:05:17.060

Link: CVE-2020-25738

cve-icon Redhat

No data.