Aller au contenu

Fiche vulnérabilité

CVE-2026-9863 : faille élevée fortra core privileged access manager… (CVSS 8.8)

Description

Fortra BoKS Manager contains an OS command injection vulnerability in the client upgrade and patch tooling for legacy tar-based client installations. A malicious or compromised legacy tar-installed client selected for upgrade or patching may be able to cause commands to be executed on the BoKS Master during client version handling.

En bref

Sévérité
Élevée (CVSS 8.8)
Vecteur CVSS
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Exploitation active
Non signalée par la CISA
Publication
15 juin 2026
Dernière mise à jour
28 juil. 2026

Produits concernés

  • fortra core privileged access manager server

Références

Rechercher une autre vulnérabilité dans la base CVE