CVE-2026-1731

BeyondTrust Remote Support (RS) and certain older versions of Privileged Remote Access (PRA) contain a critical pre-authentication remote code execution vulnerability. By sending specially crafted requests, an unauthenticated remote attacker may be able to execute operating system commands in the context of the site user.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:beyondtrust:privileged_remote_access:*:*:*:*:*:*:*:*
cpe:2.3:a:beyondtrust:remote_support:*:*:*:*:*:*:*:*

History

17 Feb 2026, 13:40

Type Values Removed Values Added
References () https://beyondtrustcorp.service-now.com/csm?id=csm_kb_article&sysparm_article=KB0023293 - () https://beyondtrustcorp.service-now.com/csm?id=csm_kb_article&sysparm_article=KB0023293 - Permissions Required
References () https://www.beyondtrust.com/trust-center/security-advisories/bt26-02 - () https://www.beyondtrust.com/trust-center/security-advisories/bt26-02 - Vendor Advisory
References () https://github.com/win3zz/CVE-2026-1731 - () https://github.com/win3zz/CVE-2026-1731 - Exploit, Third Party Advisory
References () https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2026-1731 - () https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2026-1731 - US Government Resource
References () https://www.greynoise.io/blog/reconnaissance-beyondtrust-rce-cve-2026-1731 - () https://www.greynoise.io/blog/reconnaissance-beyondtrust-rce-cve-2026-1731 - Third Party Advisory
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 9.8
CPE cpe:2.3:a:beyondtrust:remote_support:*:*:*:*:*:*:*:*
cpe:2.3:a:beyondtrust:privileged_remote_access:*:*:*:*:*:*:*:*
First Time Beyondtrust
Beyondtrust remote Support
Beyondtrust privileged Remote Access

14 Feb 2026, 01:16

Type Values Removed Values Added
References
  • () https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2026-1731 -
  • () https://www.greynoise.io/blog/reconnaissance-beyondtrust-rce-cve-2026-1731 -

13 Feb 2026, 17:16

Type Values Removed Values Added
References
  • () https://github.com/win3zz/CVE-2026-1731 -

06 Feb 2026, 22:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-02-06 22:16

Updated : 2026-02-17 13:40


NVD link : CVE-2026-1731

Mitre link : CVE-2026-1731

CVE.ORG link : CVE-2026-1731


JSON object : View

Products Affected

beyondtrust

  • privileged_remote_access
  • remote_support
CWE
CWE-78

Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')