CVE-2024-25083

A

n issue was discovered in BeyondTrust Privilege Management for Windows before 24.1. When an low-privileged user initiates a repair, there is an attack vector through which the user is able to execute any program with elevated privileges.

Configurations

Configuration 1 (hide)

cpe:2.3:a:beyondtrust:privilege_management_for_windows:*:*:*:*:*:*:*:*

History

27 Mar 2025, 14:26

Type Values Removed Values Added
First Time Beyondtrust
Beyondtrust privilege Management For Windows
References () https://www.beyondtrust.com/trust-center/security-advisories/bt24-01 - () https://www.beyondtrust.com/trust-center/security-advisories/bt24-01 - Vendor Advisory
CPE cpe:2.3:a:beyondtrust:privilege_management_for_windows:*:*:*:*:*:*:*:*

21 Nov 2024, 09:00

Type Values Removed Values Added
References () https://www.beyondtrust.com/trust-center/security-advisories/bt24-01 - () https://www.beyondtrust.com/trust-center/security-advisories/bt24-01 -

28 Aug 2024, 16:35

Type Values Removed Values Added
CWE CWE-266

Information

Published : 2024-02-16 21:15

Updated : 2025-03-27 14:26


NVD link : CVE-2024-25083

Mitre link : CVE-2024-25083

CVE.ORG link : CVE-2024-25083


JSON object : View

CWE
CWE-266

Incorrect Privilege Assignment