Prior to version 24.1, a local authenticated attacker can view Sysvol when Privilege Management for Windows is configured to use a GPO policy. This allows them to view the policy and potentially find configuration issues.
References
Link | Resource |
---|---|
https://www.beyondtrust.com/trust-center/security-advisories/bt24-02 | Vendor Advisory |
https://www.beyondtrust.com/trust-center/security-advisories/bt24-02 | Vendor Advisory |
Configurations
History
07 Feb 2025, 15:07
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:a:beyondtrust:privilege_management_for_windows:*:*:*:*:*:*:*:* | |
CWE | NVD-CWE-noinfo | |
References | () https://www.beyondtrust.com/trust-center/security-advisories/bt24-02 - Vendor Advisory | |
First Time |
Beyondtrust
Beyondtrust privilege Management For Windows |
21 Nov 2024, 08:50
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
|
References | () https://www.beyondtrust.com/trust-center/security-advisories/bt24-02 - |
16 Feb 2024, 19:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-02-16 19:15
Updated : 2025-02-07 15:07
NVD link : CVE-2024-1591
Mitre link : CVE-2024-1591
CVE.ORG link : CVE-2024-1591
JSON object : View
Products Affected
beyondtrust
- privilege_management_for_windows
CWE