Endpoint Privilege Management Utility Vulnerability in Windows Deployment by BeyondTrust
CVE-2026-40145

7.1HIGH

Key Information:

Vendor
CVE Published:
17 August 2026

What is CVE-2026-40145?

A vulnerability has been identified involving the Endpoint Privilege Management support utility and its interaction with the agent's tamper protection features. In specific scenarios, the tamper protection measures intended for the utility process may not be enforced effectively, potentially allowing unauthorized access or manipulation. This could undermine the security posture of systems utilizing this software, necessitating immediate attention from affected users to mitigate related risks.

Affected Version(s)

Endpoint Privilege Management (Windows deployment) Windows 0 < 26.1.2

References

CVSS V4

Score:
7.1
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Attack Required:
Physical
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.