Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
Critical Flaws in BeyondTrust EPM for Windows Uncovered

Critical Flaws in BeyondTrust EPM for Windows Uncovered

Posted on August 19, 2026 By CWS

BeyondTrust has identified two significant vulnerabilities in its Windows Endpoint Privilege Management (EPM) software, potentially allowing local attackers to elevate privileges and circumvent anti-tamper mechanisms. These vulnerabilities, known as CVE-2026-40144 and CVE-2026-40145, impact all versions released before 26.1.2, as detailed in the company’s advisory BT26-04 issued on August 17, 2026.

Details of the Discovered Vulnerabilities

The vulnerabilities were identified during internal security assessments using advanced AI models and proprietary testing methods. BeyondTrust has confirmed that neither flaw was exploited before they were addressed. CVE-2026-40144, the more severe of the two, is an out-of-bounds read vulnerability rated with a CVSS v4 score of 7.3. This issue, classified under CWE-125, affects a kernel-mode component of the EPM, where insufficient input validation can lead to unauthorized memory access.

Exploitation of this flaw could allow an attacker with local access and standard user privileges to execute arbitrary code in kernel mode, potentially gaining full control of the system. Such vulnerabilities are particularly concerning as they require an initial local foothold, often achieved through phishing or malware.

Implications of CVE-2026-40145

The second vulnerability, CVE-2026-40145, has a CVSS v4 score of 7.1 and involves inadequate access control between the support utility and anti-tamper features of the EPM. Under specific conditions, the protections designed for the support utility may fail, allowing an attacker with elevated privileges to execute unauthorized code.

Though it doesn’t provide an initial entry point for privilege escalation, CVE-2026-40145 can be used to undermine security controls once an attacker has already acquired elevated access. This makes it an attractive target for those looking to maintain or expand their control over a compromised system.

Recommendations and Security Measures

BeyondTrust has resolved these vulnerabilities in version 26.1.2 of the Windows EPM. Users are strongly advised to update to this version or later to mitigate potential risks. Security teams should also monitor for any unusual activity related to privilege escalation, unexpected crashes, or suspicious processes involving EPM support utilities.

The advisory underscores the critical nature of promptly updating privilege management tools, which often operate with elevated permissions and are crucial for enforcing security boundaries. Failing to patch such vulnerabilities promptly can leave systems exposed to potentially severe exploits.

In conclusion, maintaining the integrity of endpoint security systems like BeyondTrust EPM is vital for protecting organizational infrastructure. Regular updates and vigilant monitoring are essential practices to safeguard against emerging threats.

Cyber Security News Tags:BeyondTrust, CVE-2026-40144, CVE-2026-40145, Cybersecurity, endpoint protection, EPM vulnerabilities, patch updates, privilege escalation, security advisories, Windows security

Post navigation

Previous Post: Oracle Releases 943 Security Patches in August Update
Next Post: Clop Ransomware Utilizes Web Shells for Credential Theft

Related Posts

CanisterWorm Malware Targets npm, Compromises Developer Accounts CanisterWorm Malware Targets npm, Compromises Developer Accounts Cyber Security News
AI-Powered Ransomware Is the Emerging Threat That Could Bring Down Your Organization AI-Powered Ransomware Is the Emerging Threat That Could Bring Down Your Organization Cyber Security News
Most Used Malware for Cyberattacks in Late July 2026 Most Used Malware for Cyberattacks in Late July 2026 Cyber Security News
Interlock Ransomware Employs ClickFix Technique to Run Malicious Commands on Windows Machines Interlock Ransomware Employs ClickFix Technique to Run Malicious Commands on Windows Machines Cyber Security News
Chrome Zero-Day Vulnerabilities Exploited in 2025 Chrome Zero-Day Vulnerabilities Exploited in 2025 Cyber Security News
APT28 Exploits Microsoft Office Flaw Targeting Europe APT28 Exploits Microsoft Office Flaw Targeting Europe Cyber Security News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • Vercel Unveils KVM Zero-Day Flaw, Rewards Researcher $50K
  • ShinyHunters Suspect in Jordan Assists FBI in Hack Probe
  • Addressing Cybersecurity in an Era of Connected Vehicles
  • Warlock Group Targets SharePoint Flaws for Ransomware Attacks
  • Microsoft Releases Critical Exchange Update for Security Flaw

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • October 2026
  • September 2026
  • August 2026
  • July 2026
  • June 2026
  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • Vercel Unveils KVM Zero-Day Flaw, Rewards Researcher $50K
  • ShinyHunters Suspect in Jordan Assists FBI in Hack Probe
  • Addressing Cybersecurity in an Era of Connected Vehicles
  • Warlock Group Targets SharePoint Flaws for Ransomware Attacks
  • Microsoft Releases Critical Exchange Update for Security Flaw

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark