Vulnerability Details CVE-2025-5309
The chat feature within Remote Support (RS) and Privileged Remote Access (PRA) is vulnerable to a Server-Side Template Injection vulnerability which can lead to remote code execution.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 48.6%
CVSS Severity
CVSS v3 Score 9.8
Products affected by CVE-2025-5309
-
cpe:2.3:a:beyondtrust:privileged_remote_access:24.2.2
-
cpe:2.3:a:beyondtrust:privileged_remote_access:24.2.3
-
cpe:2.3:a:beyondtrust:privileged_remote_access:24.2.4
-
cpe:2.3:a:beyondtrust:privileged_remote_access:24.3.1
-
cpe:2.3:a:beyondtrust:privileged_remote_access:25.1.1
-
cpe:2.3:a:beyondtrust:remote_support:24.2.2
-
cpe:2.3:a:beyondtrust:remote_support:24.2.4
-
cpe:2.3:a:beyondtrust:remote_support:24.3.1
-
cpe:2.3:a:beyondtrust:remote_support:25.1.1