Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2020-12613

EPSS 0.20% · P41
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2020-12613

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
An issue was discovered in BeyondTrust Privilege Management for Windows through 5.6. An attacker can spawn a process with multiple users as part of the security token (prior to Avecto elevation). When Avecto elevates the process, it removes the user who is launching the process, but not the second user. Therefore this second user still retains access and can give permission to the process back to the first user.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
BeyondTrust Privilege Management 安全漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
BeyondTrust Privilege Management是美国BeyondTrust公司的用于 Windows 和 Mac SaaS 的 BeyondTrust 权限管理工具。 BeyondTrust Privilege Management Windows 22.3之前版本存在安全漏洞,该漏洞源于攻击者可以生成具有多个用户的进程作为安全令牌的一部分。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2020-12613

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2020-12613

登录查看更多情报信息。

Same Patch Batch · n/a · 2023-12-11 · 11 CVEs total

CVE-2021-3187BeyondTrust Privilege Management 安全漏洞
CVE-2023-36646ProLion CryptoSpike 安全漏洞
CVE-2023-49355jq 安全漏洞
CVE-2023-49417TOTOLINK A7000R 安全漏洞
CVE-2023-49418TOTOLINK A7000R 安全漏洞
CVE-2023-49488Openfiler 安全漏洞
CVE-2023-49490XunRuiCMS 安全漏洞
CVE-2023-49494Desdev DedeCMS 安全漏洞
CVE-2023-49964Alfresco Community Edition 安全漏洞
CVE-2023-50465MonicaHQ 安全漏洞

IV. Related Vulnerabilities

V. Comments for CVE-2020-12613

No comments yet


Leave a comment