Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6649
Adobe 6383
Ibm 6266
Cisco 5746
Debian 3919
Apache 2864
Mozilla 2857
Redhat 2581
CRITICAL 9.9
CVE-2026-40141
A high-severity vulnerability exists in a web application component of BeyondTrust Remote Support and Privileged Remote Access related to the process…
Privileged Remote Access
25.3.3+
HIGH 7.5
CVE-2026-40140
BeyondTrust Remote Support and Privileged Remote Access contain a high-severity pre-authentication vulnerability in the network communication subsyst…
Privileged Remote Access
25.3.3+
CRITICAL 9.8
CVE-2026-40139
A critical pre-authentication vulnerability exists in the authentication subsystem of BeyondTrust Remote Support. Improper processing of authenticati…
Privileged Remote Access
25.3.3+
HIGH 8.1
CVE-2026-40138
A critical pre-authentication vulnerability exists in the authentication subsystem of BeyondTrust Remote Support and Privileged Remote Access. Improp…
Privileged Remote Access
25.3.3+
CRITICAL 9.8
CVE-2026-1731 KEVEPSS 88%
BeyondTrust Remote Support (RS) and certain older versions of Privileged Remote Access (PRA) contain a critical pre-authentication remote code execut…
Privileged Remote Access
25.1 / 25.3.2+
HIGH 7.8
CVE-2025-2297
Prior to version 25.4.270.0, a local authenticated attacker can manipulate user profile files to add illegitimate challenge response codes into the l…
Privilege Management For Windows
25.4.270+
MEDIUM 6.7
CVE-2025-6250
Prior to 25.4.270.0, when wmic.exe is elevated with a full admin token the user can stop the Defendpoint service, bypassing anti-tamper protections. …
Privilege Management For Windows
25.4.270+
CRITICAL 9.8
CVE-2025-5309
The chat feature within Remote Support (RS) and Privileged Remote Access (PRA) is vulnerable to a Server-Side Template Injection vulnerability which …
Privileged Remote Access
24.3.4+
HIGH 7.8
CVE-2025-0217
BeyondTrust Privileged Remote Access (PRA) versions prior to 25.1 are vulnerable to a local authentication bypass. A local authenticated attacker can…
Privileged Remote Access
25.1+
HIGH 7.8
CVE-2025-0889
Prior to 25.2, a local authenticated attacker can elevate privileges on a system with Privilege Management for Windows installed, via the manipulatio…
Privilege Management For Windows
25.2+
HIGH 7.2
CVE-2024-12686 KEVEPSS 14%
A vulnerability has been discovered in Privileged Remote Access (PRA) and Remote Support (RS) which can allow an attacker with existing administrativ…
Privileged Remote Access
after 24.3.1
CRITICAL 9.8
CVE-2024-12356 KEVEPSS 88%
A critical vulnerability has been discovered in Privileged Remote Access (PRA) and Remote Support (RS) products which can allow an unauthenticated at…
Privileged Remote Access
after 24.3.1
MEDIUM 6.1
CVE-2024-9110
A medium severity vulnerability has been identified within Privileged Identity which can allow an attacker to perform reflected cross-site scripting …
Privileged Identity
7.4.2+
CRITICAL 9.1
CVE-2024-4219
Prior to 23.2, it is possible to perform arbitrary Server-Side requests via HTTP-based connectors within BeyondInsight, resulting in a server-side re…
Beyondinsight
23.2+
MEDIUM 5.3
CVE-2024-4220
Prior to 23.1, an information disclosure vulnerability exists within BeyondInsight which can allow an attacker to enumerate usernames.
Beyondinsight
23.1+
HIGH 7.8
CVE-2024-4017
Improper Privilege Management vulnerability in BeyondTrust U-Series Appliance on Windows, 64 bit (filesystem modules) allows DLL Side-Loading.This is…
U Series Appliance
4.0.3+
HIGH 7.8
CVE-2024-4018
Improper Privilege Management vulnerability in BeyondTrust U-Series Appliance on Windows, 64 bit (local appliance api modules) allows Privilege Escal…
U Series Appliance
4.0.3+
HIGH 7.8
CVE-2024-25083
An issue was discovered in BeyondTrust Privilege Management for Windows before 24.1. When an low-privileged user initiates a repair, there is an atta…
Privilege Management For Windows
24.1+
MEDIUM 6.7
CVE-2023-49944
The Challenge Response feature of BeyondTrust Privilege Management for Windows (PMfW) before 2023-07-14 allows local administrators to bypass this fe…
Privilege Management For Windows
2023-07-14+
HIGH 7.8
CVE-2020-12614
An issue was discovered in BeyondTrust Privilege Management for Windows through 5.6. If the publisher criteria is selected, it defines the name of a …
Privilege Management For Windows
after 5.6
HIGH 7.8
CVE-2020-28369
In BeyondTrust Privilege Management for Windows (aka PMfW) through 5.7, a SYSTEM installation causes Cryptbase.dll to be loaded from the user-writabl…
Privilege Management For Windows
after 5.7
HIGH 7.8
CVE-2020-12612
An issue was discovered in BeyondTrust Privilege Management for Windows through 5.6. When specifying a program to elevate, it can typically be found …
Privilege Management For Windows
5.6+
HIGH 7.8
CVE-2020-12615
An issue was discovered in BeyondTrust Privilege Management for Windows through 5.6. When adding the Add Admin token to a process, and specifying tha…
Privilege Management For Windows
5.6+
HIGH 8.8
CVE-2021-3187
An issue was discovered in BeyondTrust Privilege Management for Mac before 5.7. An authenticated, unprivileged user can elevate privileges by running…
Privilege Management For Mac
5.7+
HIGH 8.8
CVE-2020-12613
An issue was discovered in BeyondTrust Privilege Management for Windows through 5.6. An attacker can spawn a process with multiple users as part of t…
Privilege Management For Windows
after 5.6
HIGH 7.8
CVE-2023-23632
BeyondTrust Privileged Remote Access (PRA) versions 22.2.x to 22.4.x are vulnerable to a local authentication bypass. Attackers can exploit a flawed …
Privileged Remote Access
22.3.3+
CRITICAL 9.8
CVE-2023-4310
BeyondTrust Privileged Remote Access (PRA) and Remote Support (RS) versions 23.2.1 and 23.2.2 contain a command injection vulnerability which can be …
Privileged Remote Access
Mitigation only
MEDIUM 6.1
CVE-2021-31589EPSS 28%
A cross-site scripting (XSS) vulnerability has been reported and confirmed for BeyondTrust Secure Remote Access Base Software version 6.0.1 and older…
Appliance Base Software
after 6.0.1
HIGH 7.8
CVE-2021-42254
BeyondTrust Privilege Management prior to version 21.6 creates a Temporary File in a Directory with Insecure Permissions.
Privilege Management For Windows
21.6+
HIGH 7.5
CVE-2020-9326
BeyondTrust Privilege Management for Windows and Mac (aka PMWM; formerly Avecto Defendpoint) 5.1 through 5.5 before 5.5 SR1 mishandles command-line a…
Privilege Management For Windows And Mac
5.5+