Impact
A kernel‑mode component of BeyondTrust Endpoint Privilege Management for Windows deployments contains insufficient input validation that may allow memory to be accessed outside its intended bounds. This out‑of‑bounds read or write can corrupt kernel structures and lead to unpredictable system behavior.
Affected Systems
Windows endpoints running BeyondTrust Endpoint Privilege Management prior to version 26.1.2 are affected. The vulnerability resides in the kernel‑mode driver component of the product.
Risk and Exploitability
The CVSS score of 7.3 indicates high severity, and the vulnerability is not listed in CISA KEV. The EPSS score is unavailable. Based on the description, it is inferred that a local attacker could trigger the flaw by sending crafted input to the kernel driver from a user‑mode program or malicious code with elevated privileges. If the kernel corruption succeeds, the attacker could gain capabilities equivalent to a local administrator or achieve full system compromise. No public evidence of exploitation is reported in the data.
OpenCVE Enrichment