قاعدة الثغرات (CVE)
CVE-2026-1731
حقن أوامر دون مصادقة في BeyondTrust RS وPRA
حرجةمُستغلة فعليًاKEVالتصحيح متوفر: غير متوفر بعد
ثغرة حقن أوامر نظام في Remote Support وPrivileged Remote Access تتيح لمهاجم غير مصادَق تنفيذ أوامر بصلاحيات مستخدم الموقع. أدوات الوصول المميز هدف بالغ القيمة؛ مرتبطة ببرامج فدية.
BeyondTrust Remote Support (RS) and certain older versions of Privileged Remote Access (PRA) contain a critical pre-authentication remote code execution vulnerability. By sending specially crafted requests, an unauthenticated remote attacker may be able to execute operating system commands in the context of the site user.
المنتجات المتأثرة
| Product | الإصدارات المتأثرة | تم الإصلاح في |
|---|---|---|
| Remote Support (RS) and Privileged Remote Access (PRA) | — | — |
التغطية على سيبرانا
—