Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
Critical Flaws in BeyondTrust EPM for Windows Uncovered

Critical Flaws in BeyondTrust EPM for Windows Uncovered

Posted on August 19, 2026 By CWS

BeyondTrust has identified two significant vulnerabilities in its Windows Endpoint Privilege Management (EPM) software, potentially allowing local attackers to elevate privileges and circumvent anti-tamper mechanisms. These vulnerabilities, known as CVE-2026-40144 and CVE-2026-40145, impact all versions released before 26.1.2, as detailed in the company’s advisory BT26-04 issued on August 17, 2026.

Details of the Discovered Vulnerabilities

The vulnerabilities were identified during internal security assessments using advanced AI models and proprietary testing methods. BeyondTrust has confirmed that neither flaw was exploited before they were addressed. CVE-2026-40144, the more severe of the two, is an out-of-bounds read vulnerability rated with a CVSS v4 score of 7.3. This issue, classified under CWE-125, affects a kernel-mode component of the EPM, where insufficient input validation can lead to unauthorized memory access.

Exploitation of this flaw could allow an attacker with local access and standard user privileges to execute arbitrary code in kernel mode, potentially gaining full control of the system. Such vulnerabilities are particularly concerning as they require an initial local foothold, often achieved through phishing or malware.

Implications of CVE-2026-40145

The second vulnerability, CVE-2026-40145, has a CVSS v4 score of 7.1 and involves inadequate access control between the support utility and anti-tamper features of the EPM. Under specific conditions, the protections designed for the support utility may fail, allowing an attacker with elevated privileges to execute unauthorized code.

Though it doesn’t provide an initial entry point for privilege escalation, CVE-2026-40145 can be used to undermine security controls once an attacker has already acquired elevated access. This makes it an attractive target for those looking to maintain or expand their control over a compromised system.

Recommendations and Security Measures

BeyondTrust has resolved these vulnerabilities in version 26.1.2 of the Windows EPM. Users are strongly advised to update to this version or later to mitigate potential risks. Security teams should also monitor for any unusual activity related to privilege escalation, unexpected crashes, or suspicious processes involving EPM support utilities.

The advisory underscores the critical nature of promptly updating privilege management tools, which often operate with elevated permissions and are crucial for enforcing security boundaries. Failing to patch such vulnerabilities promptly can leave systems exposed to potentially severe exploits.

In conclusion, maintaining the integrity of endpoint security systems like BeyondTrust EPM is vital for protecting organizational infrastructure. Regular updates and vigilant monitoring are essential practices to safeguard against emerging threats.

Cyber Security News Tags:BeyondTrust, CVE-2026-40144, CVE-2026-40145, Cybersecurity, endpoint protection, EPM vulnerabilities, patch updates, privilege escalation, security advisories, Windows security

Post navigation

Previous Post: Oracle Releases 943 Security Patches in August Update
Next Post: Clop Ransomware Utilizes Web Shells for Credential Theft

Related Posts

Critical Imunify360 AV Vulnerability Exposes 56 Million Linux-hosted Websites to RCE Attacks Critical Imunify360 AV Vulnerability Exposes 56 Million Linux-hosted Websites to RCE Attacks Cyber Security News
287 Chrome Extensions Breach Privacy of Millions 287 Chrome Extensions Breach Privacy of Millions Cyber Security News
New Android Spyware Disguised as an Antivirus Attacking Business Executives New Android Spyware Disguised as an Antivirus Attacking Business Executives Cyber Security News
Microsoft Releases Cumulative Update for Windows 10 With July Patch Tuesday 2025 Microsoft Releases Cumulative Update for Windows 10 With July Patch Tuesday 2025 Cyber Security News
Cloud Security Essentials – Protecting Multi-Cloud Environments Cloud Security Essentials – Protecting Multi-Cloud Environments Cyber Security News
Go Module Typo Exposes DNS Backdoor Hack Go Module Typo Exposes DNS Backdoor Hack Cyber Security News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • RAVEN Tool Exploits Elasticsearch Vulnerabilities
  • US Indicts 17 Iranian Hackers, Offers $10M Rewards
  • StopAndProtect Exploits WordPress Sites for Malware Spread
  • Claude Now Sends Emails and Manages Files on Google
  • CISA Calls to Fix Critical Microsoft, VMware, Apple Flaws

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • August 2026
  • July 2026
  • June 2026
  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • RAVEN Tool Exploits Elasticsearch Vulnerabilities
  • US Indicts 17 Iranian Hackers, Offers $10M Rewards
  • StopAndProtect Exploits WordPress Sites for Malware Spread
  • Claude Now Sends Emails and Manages Files on Google
  • CISA Calls to Fix Critical Microsoft, VMware, Apple Flaws

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark