Description
A memory-corruption vulnerability exists in a kernel-mode component of BeyondTrust Endpoint Privilege Management (Windows deployments) prior to version 26.1.2. Insufficient validation of input processed by the component may result in memory being accessed outside its intended bounds.
Published: 2026-08-17
Score: 7.3 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

A kernel‑mode component of BeyondTrust Endpoint Privilege Management for Windows deployments contains insufficient input validation that may allow memory to be accessed outside its intended bounds. This out‑of‑bounds read or write can corrupt kernel structures and lead to unpredictable system behavior.

Affected Systems

Windows endpoints running BeyondTrust Endpoint Privilege Management prior to version 26.1.2 are affected. The vulnerability resides in the kernel‑mode driver component of the product.

Risk and Exploitability

The CVSS score of 7.3 indicates high severity, and the vulnerability is not listed in CISA KEV. The EPSS score is unavailable. Based on the description, it is inferred that a local attacker could trigger the flaw by sending crafted input to the kernel driver from a user‑mode program or malicious code with elevated privileges. If the kernel corruption succeeds, the attacker could gain capabilities equivalent to a local administrator or achieve full system compromise. No public evidence of exploitation is reported in the data.

Generated by OpenCVE AI on August 17, 2026 at 18:45 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Identify Windows endpoints running BeyondTrust Endpoint Privilege Management older than 26.1.2.
  • Apply the latest product release (26.1.2 or newer) to eliminate the memory‑corruption flaw.
  • If an update cannot be applied immediately, restrict the Endpoint Privilege Management service to trusted administrators only, enable detailed logging, and monitor for anomalous kernel‑mode activity.

Generated by OpenCVE AI on August 17, 2026 at 18:45 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Fri, 21 Aug 2026 13:00:00 +0000

Type Values Removed Values Added
First Time appeared Beyondtrust
Beyondtrust endpoint Privilege Management (windows Deployments)
Vendors & Products Beyondtrust
Beyondtrust endpoint Privilege Management (windows Deployments)

Mon, 17 Aug 2026 16:15:00 +0000

Type Values Removed Values Added
Description A memory-corruption vulnerability exists in a kernel-mode component of BeyondTrust Endpoint Privilege Management (Windows deployments) prior to version 26.1.2. Insufficient validation of input processed by the component may result in memory being accessed outside its intended bounds.
Title Memory corruption vulnerability in Endpoint Privilege Management (Windows deployments)
Weaknesses CWE-125
References
Metrics cvssV4_0

{'score': 7.3, 'vector': 'CVSS:4.0/AV:L/AC:H/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N'}


Subscriptions

Beyondtrust Endpoint Privilege Management (windows Deployments)
cve-icon MITRE

Status: PUBLISHED

Assigner: BT

Published:

Updated: 2026-08-17T18:28:37.263Z

Reserved: 2026-04-09T18:39:27.757Z

Link: CVE-2026-40144

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-08-17T16:16:56.203

Modified: 2026-08-18T15:04:46.610

Link: CVE-2026-40144

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-21T12:40:05Z

Weaknesses