Sploitus

CVE-2024-12356

8 known exploits for CVE-2024-12356

A critical vulnerability has been discovered in Privileged Remote Access (PRA) and Remote Support (RS) products which can allow an unauthenticated attacker to inject commands that are run as a site user.

Beyondtrust Privileged Remote Access
≀ 24.3.1
Beyondtrust Remote Support
≀ 24.3.1
CVSS 3.1
9.8 CRITICAL
EPSS
88.0% (100th percentile)
Weakness
CWE-77
NVD status
Analyzed
Published
2024-12-17
Attack patterns
CAPEC-88
Entry point
gskey path
Path
/nw
CVE-2024-12356 at NVD
Authoritative description, scoring and affected products

8 known exploits for CVE-2024-12356

Proof-of-concept code and exploit modules indexed by Sploitus