First published: Tue Jun 11 2024(Updated: )
A medium severity vulnerability in BIPS has been identified where an authenticated attacker with high privileges can access the SSH private keys via an information leak in the server response.
Credit: 13061848-ea10-403d-bd75-c83a022c2891
Affected Software | Affected Version | How to fix |
---|---|---|
BeyondTrust BeyondInsight Password Safe | >=23.3<23.3.0.929 | |
BeyondTrust BeyondInsight Password Safe |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-5813 is classified as a medium severity vulnerability.
To fix CVE-2024-5813, update BIPS to the latest version beyond 23.3.0.929.
CVE-2024-5813 affects users of BeyondTrust BeyondInsight Password Safe versions from 23.3.0.929 and below.
An authenticated attacker with high privileges can exploit CVE-2024-5813.
The risk associated with CVE-2024-5813 is that it allows access to SSH private keys through information leakage.