Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2024-12686

A vulnerability has been discovered in Privileged Remote Access (PRA) and Remote Support (RS) which can allow an attacker with existing administrative privileges to inject commands and run as a site user.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.046
EPSS Ranking 88.5%
CVSS Severity
CVSS v3 Score 6.6
Proposed Action
BeyondTrust Privileged Remote Access (PRA) and Remote Support (RS) contain an OS command injection vulnerability that can be exploited by an attacker with existing administrative privileges to upload a malicious file. Successful exploitation of this vulnerability can allow a remote attacker to execute underlying operating system commands within the context of the site user.
Ransomware Campaign
Unknown
Products affected by CVE-2024-12686


Contact Us

Shodan ® - All rights reserved