CVE-2026-1731

Source
https://cve.org/CVERecord?id=CVE-2026-1731
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-1731.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-1731
Published
2026-02-06T22:16:11.020Z
Modified
2026-03-13T04:01:56.796489Z
Severity
  • 9.8 (Critical) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
Summary
[none]
Details

BeyondTrust Remote Support (RS) and certain older versions of Privileged Remote Access (PRA) contain a critical pre-authentication remote code execution vulnerability. By sending specially crafted requests, an unauthenticated remote attacker may be able to execute operating system commands in the context of the site user.

References

Affected packages

Git /

Affected ranges

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-1731.json"
unresolved_ranges
[
    {
        "events": [
            {
                "introduced": "0"
            },
            {
                "fixed": "25.1"
            }
        ]
    },
    {
        "events": [
            {
                "introduced": "0"
            },
            {
                "fixed": "25.3.2"
            }
        ]
    }
]