Security
Loading…

CVE-2024-12686

UNKNOWNKnown Exploited
Description

BeyondTrust Privileged Remote Access (PRA) and Remote Support (RS) contain an OS command injection vulnerability that can be exploited by an attacker with existing administrative privileges to upload a malicious file. Successful exploitation of this vulnerability can allow a remote attacker to execute underlying operating system commands within the context of the site user.

Timeline
Published:January 13th, 2025 12:00 AM
Last modified:January 13th, 2025 12:00 AM
Added to KEV:January 13th, 2025
CVSS Scoring

No CVSS v3 score available

Affected Software
From NVD CPE configuration data

Vendors

BeyondTrust

Products

Privileged Remote Access (PRA) and Remote Support (RS)
Weaknesses (CWE)
References & Reports
Advisories, patches, and third-party reports

No references available.

Source: CISA KEV + NVD · Data may lag official sources by up to one minute