cyberark credential-provider CVE-2021-31796 is a vulnerability in CyberArk Credential Provider
Published on September 2, 2021

An inadequate encryption vulnerability discovered in CyberArk Credential Provider before 12.1 may lead to Information Disclosure. An attacker may realistically have enough information that the number of possible keys (for a credential file) is only one, and the number is usually not higher than 2^36.

NVD


Products Associated with CVE-2021-31796

Want to know whenever a new CVE is published for CyberArk Credential Provider? stack.watch will email you.

 

Exploit Probability

EPSS
0.61%
Percentile
69.48%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.