First published: Tue Jun 04 2024(Updated: )
Prior to 23.1, an information disclosure vulnerability exists within BeyondInsight which can allow an attacker to enumerate usernames.
Credit: 13061848-ea10-403d-bd75-c83a022c2891
Affected Software | Affected Version | How to fix |
---|---|---|
Beyondtrust Beyondinsight | <23.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-4220 has a medium severity level due to the potential for information disclosure.
CVE-2024-4220 affects versions of BeyondInsight prior to 23.1.
The recommended fix for CVE-2024-4220 is to upgrade BeyondInsight to version 23.1 or later.
CVE-2024-4220 is classified as an information disclosure vulnerability.
An attacker can potentially enumerate usernames due to the vulnerability in CVE-2024-4220.