← Vulnerability feed

Vulnerability record · CVE-2019-9627 · published 8 March 2019

CVE-2019-9627: Cyberark endpoint privilege manager out-of-bounds write vulnerability

Cyberark · Endpoint Privilege Manager

A buffer overflow in the kernel driver CybKernelTracker.sys in CyberArk Endpoint Privilege Manager versions prior to 10.7 allows an attacker (without Administrator privileges) to escalate privileges or crash the machine by loading an image, such as a DLL, with a long path.

7.0 CVSS 3.1 High EPSS 0.41% · top 67.1% CWE-787 · Out-of-bounds write
7.0CVSS 3.1 base score, v2 6.9
0.41%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
6References
17 Jun 2026Last modified by NVD

Description

A buffer overflow in the kernel driver CybKernelTracker.sys in CyberArk Endpoint Privilege Manager versions prior to 10.7 allows an attacker (without Administrator privileges) to escalate privileges or crash the machine by loading an image, such as a DLL, with a long path.

CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2019-9627 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

9.8CVE-2018-13052Cyberark endpoint privilege manager vulnerabilityIn CyberArk Endpoint Privilege Manager (formerly Viewfinity), Privilege Escalation is possible if the attacker has one process that executes as Admin.EPSS 1.2%8.5CVE-2026-2914Cyberark endpoint privilege manager improper privilege management vulnerabilityCyberArk Endpoint Privilege Manager Agent versions 25.10.0 and lower allow potential unauthorized privilege elevation leveraging CyberArk elevation d…EPSS 0.17%7.8CVE-2025-66374Cyberark endpoint privilege manager improper privilege management vulnerabilityCyberArk Endpoint Privilege Manager Agent through 25.10.0 allows a local user to achieve privilege escalation through policy elevation of an Administ…EPSS 0.24%7.8CVE-2021-44049Cyberark endpoint privilege manager exposure of resource to wrong sphere vulnerabilityCyberArk Endpoint Privilege Manager (EPM) through 11.5.3.328 before 2021-12-20 allows a local user to gain elevated privileges via a Trojan horse Pro…EPSS 0.40%7.8CVE-2018-14894Cyberark endpoint privilege manager improper privilege management vulnerabilityCyberArk Endpoint Privilege Manager 10.2.1.603 and earlier allows an attacker (who is able to edit permissions of a file) to bypass intended access r…EPSS 1.9%5.5CVE-2020-25738Cyberark endpoint privilege manager uncontrolled search path element vulnerabilityCyberArk Endpoint Privilege Manager (EPM) 11.1.0.173 allows attackers to bypass a Credential Theft protection mechanism by injecting a DLL into a pro…EPSS 0.44%5.4CVE-2018-12903Cyberark endpoint privilege manager cross-site scripting vulnerabilityIn CyberArk Endpoint Privilege Manager (formerly Viewfinity) 10.2.1.603, there is persistent XSS via an account name on the create token screen, the …EPSS 0.64%8.8CVE-2026-53266Linux kernel ebtables SNAT out-of-bounds write in ARP rewriteThe ebtables SNAT target rewrites the ARP sender hardware address via skb_store_bits() without first making that range writable. When the ARP SHA byt…KEVEPSS 0.65%analysed

Source: NIST National Vulnerability Database (record CVE-2019-9627), CISA KEV, FIRST EPSS (scores of 2026-09-26). This page is refreshed as NVD updates the record.