📦

enterprise_password_vault

Vendor: cyberark

Actively Exploited 0 CISA KEV List
PoC / Exploits 1 Code Available
Total RCEs 0 Remote Access
Total CVEs 2 Total Indexed
Avg. EPSS 40.01% Exploit Prob.
Latest CVE CVE-2019-7442 May 08

Security Vulnerability Index

Page 1 / 1
9.8 CVSS
CVE-2019-7442
Exploit Found

An XML external entity (XXE) vulnerability in the Password Vault Web Access (PVWA) of CyberArk Enterprise Password Vault <=10.7 allows remote attackers to read arbitrary files or potentially bypass authentication via a crafted DTD in the SAML authentication system.

EPSS: 40.01%