Buffer Overflow in CyberArk Endpoint Privilege Manager by CyberArk
CVE-2019-9627
7HIGH
What is CVE-2019-9627?
A buffer overflow vulnerability has been identified in the CybKernelTracker.sys kernel driver of CyberArk's Endpoint Privilege Manager. This flaw allows a malicious actor, without requiring Administrator privileges, to escalate their access to the system or cause the machine to crash by loading an image, such as a DLL, that has an excessively long path. This vulnerability highlights the importance of proper input validation and memory management in the software to prevent unauthorized access and potential system instability.