OCTOBER 10, 2026
Live Feed
Back to database
Case File

CVE-2026-82356

HIGH · CVSS 7.5 EPSS 0.11%

Source: NVD + CISA KEV + EPSS · Published 2026-09-23 · Last synced 2026-10-10

CyberRota Analysis

AI-Generated

Imprivata EAM versions up to 26.2.6 are vulnerable due to their inability to rotate RSA key pairs after deployment for X.509 certificate generation, which violates security best practices. This could lead to increased risk of key compromise over time, potentially allowing unauthorized access to sensitive systems. Organizations using affected versions should prioritize remediation to enhance their cryptographic security posture.

CVE
CVE-2026-82356
Severity
HIGH
CVSS
7.5
EPSS
0.11%

Original NVD Description

Imprivata EAM <=26.2.6 lacks the ability to rotate its RSA key pair after deployment when generating an X.509 certificate. Using an RSA key pair indefinitely for certificate generation is against best practices.