Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2024-25083


An issue was discovered in BeyondTrust Privilege Management for Windows before 24.1. When an low-privileged user initiates a repair, there is an attack vector through which the user is able to execute any program with elevated privileges.


Published

2024-02-16T21:15:08.260

Last Modified

2025-03-27T14:26:40.907

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 6.3 (MEDIUM)

Weaknesses
  • Type: Secondary
    CWE-266

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application beyondtrust privilege_management_for_windows < 24.1 Yes

References