PT-2026-48829 · Idira · Idira Privileged Access Manager Self-Hosted Vault

CVE-2026-45169

·

Published

2026-06-12

·

Updated

2026-06-12

CVSS v4.0

8.7

High

VectorAV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:L/U:Amber
Name of the Vulnerable Software and Affected Versions Idira Privileged Access Manager (PAM) Self-Hosted Vault versions prior to 15.0.3 Idira Privileged Access Manager (PAM) Self-Hosted Vault versions prior to 14.6.5 Idira Privileged Access Manager (PAM) Self-Hosted Vault versions prior to 14.2.7 Idira Privileged Access Manager (PAM) Self-Hosted Vault versions prior to 14.0.8
Description A validation issue exists where processing unexpected input under specific circumstances and configuration scenarios can lead to unexpected service termination. This results in a localized denial of service (DoS), a condition where a system or service becomes unavailable to its intended users.
Recommendations Update to version 15.0.3 or later. Update to version 14.6.5 or later. Update to version 14.2.7 or later. Update to version 14.0.8 or later.

Fix

DoS

Resource Exhaustion

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-45169

Affected Products

Idira Privileged Access Manager Self-Hosted Vault