Fortra's
Core Privileged Access Manager (BoKS) contains an OS command injection vulnerability in the boks_autoregisterd service. A remote attacker with network access to the service may be able to cause commands to be executed with the privileges of the service during the autoregistration processing.
Metrics
Affected Vendors & Products
References
History
Mon, 15 Jun 2026 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 15 Jun 2026 16:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Fortra's Core Privileged Access Manager (BoKS) contains an OS command injection vulnerability in the boks_autoregisterd service. A remote attacker with network access to the service may be able to cause commands to be executed with the privileges of the service during the autoregistration processing. | |
| Title | Core Privileged Access Manager (BoKS) autoregistration service command injection vulnerability | |
| Weaknesses | CWE-78 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: Fortra
Published:
Updated: 2026-06-15T16:09:28.297Z
Reserved: 2026-05-28T16:37:50.792Z
Link: CVE-2026-9862
Updated: 2026-06-15T16:09:23.776Z
Status : Received
Published: 2026-06-15T16:16:35.357
Modified: 2026-06-15T16:16:35.357
Link: CVE-2026-9862
No data.
OpenCVE Enrichment
No data.