SEPTEMBER 19, 2026
Live Feed
Back to database
Case File

CVE-2026-40144

HIGH · CVSS 7.3 EPSS 0.12%

Source: NVD + CISA KEV + EPSS · Published 2026-08-17 · Last synced 2026-09-16

CyberRota Analysis

AI-Generated

A memory-corruption vulnerability in the kernel-mode component of BeyondTrust Endpoint Privilege Management for Windows prior to version 26.1.2 allows for potential unauthorized access to memory outside its intended bounds. This could lead to system instability or exploitation by attackers to escalate privileges. Organizations using affected versions should prioritize patching to mitigate the risk of exploitation.

CVE
CVE-2026-40144
Severity
HIGH
CVSS
7.3
EPSS
0.12%
Windows

Original NVD Description

A memory-corruption vulnerability exists in a kernel-mode component of BeyondTrust Endpoint Privilege Management (Windows deployments) prior to version 26.1.2. Insufficient validation of input processed by the component may result in memory being accessed outside its intended bounds.