A binary in the BoKS Server Agent component of Fortra's Core Privileged Access Manager (BoKS) on versions 7.2.0 (up to 7.2.0.17), 8.1.0 (up to 8.1.0.22), 8.1.1 (up to 8.1.1.7), 9.0.0 (up to 9.0.0.1) and also legacy tar installs of BoKS 7.2 without hotfix #0474 on Linux, AIX, and Solaris allows low privilege local users to dump data from the cache.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://www.cve.org/cverecord?id=CVE-2025-5141 |
![]() ![]() |
History
Tue, 17 Jun 2025 20:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Tue, 17 Jun 2025 19:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A binary in the BoKS Server Agent component of Fortra's Core Privileged Access Manager (BoKS) on versions 7.2.0 (up to 7.2.0.17), 8.1.0 (up to 8.1.0.22), 8.1.1 (up to 8.1.1.7), 9.0.0 (up to 9.0.0.1) and also legacy tar installs of BoKS 7.2 without hotfix #0474 on Linux, AIX, and Solaris allows low privilege local users to dump data from the cache. | |
Title | Core Privileged Access Manager (BoKS) Leakage of Sensitive Data via the Cache | |
Weaknesses | CWE-524 | |
References |
| |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: Fortra
Published: 2025-06-17T19:30:51.781Z
Updated: 2025-06-17T19:50:34.425Z
Reserved: 2025-05-23T21:18:11.239Z
Link: CVE-2025-5141

Updated: 2025-06-17T19:50:26.362Z

Status : Awaiting Analysis
Published: 2025-06-17T20:15:32.583
Modified: 2025-06-17T20:50:23.507
Link: CVE-2025-5141

No data.