Unrated severityNVD Advisory· Published Dec 12, 2023· Updated Aug 28, 2024
CVE-2020-12615
CVE-2020-12615
Description
An issue was discovered in BeyondTrust Privilege Management for Windows through 5.6. When adding the Add Admin token to a process, and specifying that it runs at medium integrity with the user owning the process, this security token can be stolen and applied to arbitrary processes.
Affected products
2(expand)+ 1 more
- (no CPE)
- (no CPE)range: <=5.6
Patches
Vulnerability mechanics
References
2News mentions
0No linked articles in our index yet.