CVE-2024-5813

Severity CVSS v4.0:
Pending analysis
Type:
CWE-200 Information Leak / Disclosure
Publication date:
11/06/2024
Last modified:
11/02/2025

Description

A medium severity vulnerability in BIPS has been identified where an authenticated attacker with high privileges can access the SSH private keys via an information leak in the server response.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:beyondtrust:beyondinsight_password_safe:*:*:*:*:*:*:*:* 23.3 (including) 23.3.0.929 (excluding)