Code Injection Vulnerability in BeyondTrust Privilege Management for Windows
CVE-2020-28369

Currently unrated

Key Information:

Vendor
CVE Published:
12 December 2023

What is CVE-2020-28369?

A vulnerability exists in BeyondTrust Privilege Management for Windows, where the installation as SYSTEM allows the loading of Cryptbase.dll from the user-writable directory %WINDIR%\Temp. This can be exploited to execute arbitrary code, posing a significant risk to system integrity and security.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2020-28369 : Code Injection Vulnerability in BeyondTrust Privilege Management for Windows