Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2024-12686


A vulnerability has been discovered in Privileged Remote Access (PRA) and Remote Support (RS) which can allow an attacker with existing administrative privileges to inject commands and run as a site user.


Published

2024-12-18T21:15:08.020

Last Modified

2025-01-14T16:10:03.853

Status

Analyzed

Source

13061848-ea10-403d-bd75-c83a022c2891

Severity

CVSSv3.1: 6.6 (MEDIUM)

Weaknesses
  • Type: Secondary
    CWE-78
  • Type: Primary
    CWE-78

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application beyondtrust privileged_remote_access ≤ 24.3.1 Yes
Application beyondtrust remote_support ≤ 24.3.1 Yes

References