Critical severity9.9NVD Advisory· Published Jul 6, 2026· Updated Jul 7, 2026
CVE-2026-40141
CVE-2026-40141
Description
A high-severity vulnerability exists in a web application component of BeyondTrust Remote Support and Privileged Remote Access related to the processing of certain input parameters. Insufficient validation of user-supplied input may allow an authenticated attacker with limited privileges to access unintended resources or data beyond their authorization scope. Exploitation is restricted to accounts with specific permissions.
Affected products
4- cpe:2.3:a:beyondtrust:privileged_remote_access:*:*:*:*:*:*:*:*Range: <25.3.3
cpe:2.3:a:beyondtrust:remote_support:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:beyondtrust:remote_support:*:*:*:*:*:*:*:*range: <25.3.3
- (no CPE)
Patches
Vulnerability mechanics
References
1- www.beyondtrust.com/trust-center/security-advisories/bt26-03nvdVendor Advisory
News mentions
0No linked articles in our index yet.