Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Smart Rule Overwrite Bypass in BeyondInsight PasswordSafe
Vulnerability Description
A low severity vulnerability in BIPS has been identified where an attacker with high privileges or a compromised high privilege account can overwrite Read-Only smart rules via a specially crafted API request.
CVSS Information
CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:L/I:L/A:N
Vulnerability Type
使用欺骗进行的认证绕过
Vulnerability Title
BeyondInsight 安全漏洞
Vulnerability Description
BeyondInsight是美国BeyondTrust的一个特权访问管理 (PAM) 报告平台。 BeyondInsight 存在安全漏洞,该漏洞源于具有高权限帐户的攻击者可以通过特制的API请求覆盖只读智能规则。
CVSS Information
N/A
Vulnerability Type
N/A