NA

CVE-2023-4310

Published: 05/09/2023 Updated: 07/11/2023
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

BeyondTrust Privileged Remote Access (PRA) and Remote Support (RS) versions 23.2.1 and 23.2.2 contain a command injection vulnerability which can be exploited through a malicious HTTP request. Successful exploitation of this vulnerability can allow an unauthenticated remote malicious user to execute underlying operating system commands within the context of the site user. This issue is fixed in version 23.2.3.

Vulnerable Product Search on Vulmon Subscribe to Product

beyondtrust remote support 23.2.2

beyondtrust remote support 23.2.1

beyondtrust privileged remote access 23.2.1

beyondtrust privileged remote access 23.2.2