CVE-2024-54840
4.2MEDIUMPVWA (Password Vault Web Access) in CyberArk Privileged Access Manager Self-Hosted before 14.4 does not properly address environment issues that can contribute to Host header injection.
Publicado: 2/3/2025Atualizado: 3/14/2025
Descrição
PVWA (Password Vault Web Access) in CyberArk Privileged Access Manager Self-Hosted before 14.4 does not properly address environment issues that can contribute to Host header injection.
Análise IADesenvolvido por IA
Produtos Afetados
cyberarkprivileged_access_manager