• CVSSv3 Score: 8.8 AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H

  • Severity: High

  • Issue Date: 2024-04-23
  • Updated On: 2024-04-23
  • CVE(s): CVE-2024-4018

Synopsis:

U-Series Appliance - Privilege Escalation via Local Appliance API

Impacted Product:

U-Series Appliance

Prior to version 4.0.3, an unprivileged user can use the local appliance API to create an account with administrator privileges or change the password of the btadmin account.

Product Version
U-Series Appliance Prior to 4.0.3
Product Version
U-Series Appliance 4.0.3
Want to learn why over 20,000 customers chose BeyondTrust?
Prefers reduced motion setting detected. Animations will now be reduced as a result.