A low severity vulnerability in BIPS has been identified where an attacker with high privileges or a compromised high privilege account can overwrite Read-Only smart rules via a specially crafted API request.
2024-06-11T16:15:29.207
2025-02-11T21:36:43.423
Analyzed
13061848-ea10-403d-bd75-c83a022c2891
CVSSv3.1: 3.3 (LOW)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | beyondtrust | beyondinsight_password_safe | < 23.2.0.1293 | Yes |
Application | beyondtrust | beyondinsight_password_safe | < 23.3.0.959 | Yes |
Application | beyondtrust | beyondinsight_password_safe | 24.1 | Yes |