CVE-2021-31798
EUVD-2021-1867902.09.2021, 01:15
The effective key space used to encrypt the cache in CyberArk Credential Provider prior to 12.1 has low entropy, and under certain conditions a local malicious user can obtain the plaintext of cache files.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| cyberark | credential_provider | 𝑥 < 12.1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration