CVE-2024-42338

CyberArk - CWE-200: Exposure of Sensitive Information to an Unauthorized Actor

Severity
Medium 4.3
CVSS 3.1
Remote, needs privileges or user interaction what this means
Exploited
Not listed
EPSS
0.003
19.6th percentile
Discovered by
Unknown
Vendor-published field
Published
Aug 25, 2024
Assigned by incd

Description

CyberArk - CWE-200: Exposure of Sensitive Information to an Unauthorized Actor

Weakness: CWE-200

Affected products

Vendor Product Category Matched by
Palo Alto Networks CyberArk Identity Identity / IAM / MFA affected-vendor
Vendor-reported products (1)
  • CyberArk · CyberArk Identity Management

Credit

Dudu Moyal, Moriel Harush - Peer Security LTD

Vendor remediation

Upgrade to latest version

Something wrong here?