CVE-2026-1731

BeyondTrust Remote Support (RS) and certain older versions of Privileged Remote Access (PRA) contain a critical pre-authentication remote code execution vulnerability. By sending specially crafted requests, an unauthenticated remote attacker may be able to execute operating system commands in the context of the site user.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:beyondtrust:privileged_remote_access:*:*:*:*:*:*:*:*
cpe:2.3:a:beyondtrust:remote_support:*:*:*:*:*:*:*:*

History

17 Jun 2026, 10:16

Type Values Removed Values Added
Summary
  • (es) BeyondTrust Remote Support (RS) y ciertas versiones anteriores de Privileged Remote Access (PRA) contienen una crítica vulnerabilidad de ejecución remota de código de pre-autenticación. Al enviar solicitudes especialmente diseñadas, un atacante remoto no autenticado podría ejecutar comandos del sistema operativo en el contexto del usuario del sitio.

17 Feb 2026, 13:40

Type Values Removed Values Added
References () https://beyondtrustcorp.service-now.com/csm?id=csm_kb_article&sysparm_article=KB0023293 - () https://beyondtrustcorp.service-now.com/csm?id=csm_kb_article&sysparm_article=KB0023293 - Permissions Required
References () https://www.beyondtrust.com/trust-center/security-advisories/bt26-02 - () https://www.beyondtrust.com/trust-center/security-advisories/bt26-02 - Vendor Advisory
References () https://github.com/win3zz/CVE-2026-1731 - () https://github.com/win3zz/CVE-2026-1731 - Exploit, Third Party Advisory
References () https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2026-1731 - () https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2026-1731 - US Government Resource
References () https://www.greynoise.io/blog/reconnaissance-beyondtrust-rce-cve-2026-1731 - () https://www.greynoise.io/blog/reconnaissance-beyondtrust-rce-cve-2026-1731 - Third Party Advisory
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 9.8
CPE cpe:2.3:a:beyondtrust:remote_support:*:*:*:*:*:*:*:*
cpe:2.3:a:beyondtrust:privileged_remote_access:*:*:*:*:*:*:*:*
First Time Beyondtrust
Beyondtrust remote Support
Beyondtrust privileged Remote Access

14 Feb 2026, 01:16

Type Values Removed Values Added
References
  • () https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2026-1731 -
  • () https://www.greynoise.io/blog/reconnaissance-beyondtrust-rce-cve-2026-1731 -

13 Feb 2026, 17:16

Type Values Removed Values Added
References
  • () https://github.com/win3zz/CVE-2026-1731 -

06 Feb 2026, 22:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-02-06 22:16

Updated : 2026-06-17 10:16


NVD link : CVE-2026-1731

Mitre link : CVE-2026-1731

CVE.ORG link : CVE-2026-1731


JSON object : View

Products Affected

beyondtrust

  • remote_support
  • privileged_remote_access
CWE
CWE-78

Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')