Vulnerability intelligence
CVE-2026-40145
A vulnerability exists in the interaction between a Endpoint Privilege Management (Windows Deployment) support utility and the agent's tamper protection controls. Under certain conditions, the protections applied to the utility process may not be enforced as intended.
CVSS Score
7.1
High
EPSS — Exploit Probability
0.2%
Riskier than 4% of all CVEs · checked 2026-10-02
Exploitation
Not in CISA KEV
KEV does not include every exploited vulnerability
Remediation
unknown
Check vendor advisories
1 article across 1 outlet · first covered Aug 19, 2026 · latest Aug 19, 2026
Coverage timeline
-
BeyondTrust patches CVE-2026-40144/45 in Windows endpoint toolsecurityonline.info · Aug 19, 2026