CVE-2024-54840

4.2MEDIUM

PVWA (Password Vault Web Access) in CyberArk Privileged Access Manager Self-Hosted before 14.4 does not properly address environment issues that can contribute to Host header injection.

Publicado: 2/3/2025Actualizado: 3/14/2025

Descripción

PVWA (Password Vault Web Access) in CyberArk Privileged Access Manager Self-Hosted before 14.4 does not properly address environment issues that can contribute to Host header injection.

Análisis IAImpulsado por IA

Productos Afectados

cyberarkprivileged_access_manager

Referencias