Impact
Fortra's Core Privileged Access Manager (BoKS) contains a stack-based buffer overflow in the boks_autoregisterd service. The flaw can be triggered by a remote attacker with network access, allowing memory corruption that can lead to arbitrary code execution. The vulnerability can compromise confidentiality, integrity, and availability of the BoKS system.
Affected Systems
All installations of Fortra's Core Privileged Access Manager (BoKS) running boks-server versions older than 8.1.0.24 or 9.0.0.7 are affected. The boks_autoregisterd service, which listens on port 6507 by default, is the entry point.
Risk and Exploitability
The CVSS score of 9.8 indicates critical severity, and the absence of an EPSS score means the current exploitation probability is unknown. The vulnerability is not listed in the CISA KEV catalog. Exploitation requires only network connectivity to the autoregistration service, making the attack vector remote.
OpenCVE Enrichment