CVE-2026-9862
Fortra Core Privileged Access Manager (BoKS), core privileged access manager server
Fortra's Core Privileged Access Manager (BoKS) contains an OS command injection vulnerability in the boks_autoregisterd service. A remote attacker with network access to the service may be able to cause commands to be executed with the privileges of the service during the autoregistration processing.
- CVSS
- 9.8
- EPSS
- 0.86% 54.5% percentile
- CISA KEV
- Not listed
- Published
- 2026.06.16