Description
A vulnerability exists in the interaction between a Endpoint Privilege Management (Windows Deployment) support utility and the agent's tamper protection controls. Under certain conditions, the protections applied to the utility process may not be enforced as intended.
Published: 2026-08-17
Score: 7.1 High
EPSS: n/a
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

A flaw exists in the interaction between a BeyondTrust Endpoint Privilege Management support utility and the agent’s tamper protection controls. When the advertised conditions are met, the protections that should apply to the utility process are not enforced correctly, allowing a malicious actor to perform actions against the utility as if they had legitimate privileges. The weakness is a failure of security checks (CWE-1220).

Affected Systems

The vulnerability affects BeyondTrust Endpoint Privilege Management for Windows deployment. No specific product version information is available from the advisory.

Risk and Exploitability

The CVSS score of 7.1 signifies a high severity issue. EPSS data is not available and the vulnerability is not listed in the CISA KEV catalog, indicating no widely publicized exploitation reports. The likely attack vector is local; an attacker who can run or manipulate the support utility on the target system would be able to bypass tamper protection, potentially enabling privileged code execution or unauthorized modifications.

Generated by OpenCVE AI on August 17, 2026 at 17:42 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Apply any available patch or update supplied by BeyondTrust as described in their advisory.
  • If a patch is not yet released, limit the execution of the support utility to trusted administrative accounts and enforce operating‑system level tamper protections for the utility process.
  • Monitor event logs for unexpected changes to the support utility or its protection state to detect exploitation attempts.

Generated by OpenCVE AI on August 17, 2026 at 17:42 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Mon, 17 Aug 2026 16:45:00 +0000

Type Values Removed Values Added
Description A vulnerability exists in the interaction between a Endpoint Privilege Management (Windows Deployment) support utility and the agent's tamper protection controls. Under certain conditions, the protections applied to the utility process may not be enforced as intended.
Title Control protections bypass in BeyondTrust Endpoint Privilege Management (Windows deployment) support utility
Weaknesses CWE-1220
References
Metrics cvssV4_0

{'score': 7.1, 'vector': 'CVSS:4.0/AV:L/AC:L/AT:P/PR:H/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N'}


Subscriptions

No data.

cve-icon MITRE

Status: PUBLISHED

Assigner: BT

Published:

Updated: 2026-08-17T18:17:49.348Z

Reserved: 2026-04-09T18:39:27.757Z

Link: CVE-2026-40145

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-08-17T17:16:39.787

Modified: 2026-08-17T17:16:39.787

Link: CVE-2026-40145

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-17T17:45:03Z

Weaknesses
  • CWE-1220

    Insufficient Granularity of Access Control