CISA Incorporates Essential Defect in BeyondTrust Software to Catalog of Utilized Weaknesses
The United States Department of Homeland Security’s Cybersecurity and Infrastructure Security Agency (CISA) included a crucial security imperfection affecting BeyondTrust Privileged Remote Access (PRA) and Remote Support (RS) solutions in the Identified Exploited Vulnerabilities (IEV) list on Thursday, pointing out proof of ongoing exploitation in the environment. The flaw, identified as CVE-2024-12356 (CVSS score: 9.8), is a vulnerability related to command injection.
