CVE-2024-5812

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
11/06/2024
Last modified:
11/02/2025

Description

A low severity vulnerability in BIPS has been identified where an attacker with high privileges or a compromised high privilege account can overwrite Read-Only smart rules via a specially crafted API request.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:beyondtrust:beyondinsight_password_safe:*:*:*:*:*:*:*:* 23.2 (including) 23.2.0.1293 (excluding)
cpe:2.3:a:beyondtrust:beyondinsight_password_safe:*:*:*:*:*:*:*:* 23.3 (including) 23.3.0.959 (excluding)
cpe:2.3:a:beyondtrust:beyondinsight_password_safe:24.1:*:*:*:*:*:*:*