📦 Privilege Management For Windows

by Beyondtrust

🔍 What is Privilege Management For Windows?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2025-2297

HIGH CVSS 7.8 Jul 28, 2025

This vulnerability allows local authenticated users to edit their profile files and insert illegitimate challenge response codes, enabling privilege escalation to administrator. It affects BeyondTrust...

CVE-2025-0889

HIGH CVSS 7.8 Feb 26, 2025

This vulnerability allows local authenticated attackers to elevate privileges on systems running Privilege Management for Windows versions before 25.2. Attackers can manipulate COM objects to gain hig...

CVE-2020-12614

HIGH CVSS 7.8 Dec 12, 2023

This vulnerability in BeyondTrust Privilege Management for Windows allows attackers to bypass certificate validation when publisher criteria is selected for Add Admin tokens. A standard user can explo...

CVE-2020-12615

HIGH CVSS 7.8 Dec 12, 2023

This vulnerability in BeyondTrust Privilege Management for Windows allows attackers to steal security tokens when the 'Add Admin' token is configured to run at medium integrity with user ownership. At...

CVE-2020-12613

HIGH CVSS 8.8 Dec 11, 2023

This vulnerability in BeyondTrust Privilege Management for Windows allows attackers to bypass privilege elevation controls. An attacker can spawn a process with multiple user tokens, and when the Avec...