CVE-2026-40138
BeyondTrust Remote Support, Privileged Remote Access, privileged remote access 취약점
A critical pre-authentication vulnerability exists in the authentication subsystem of BeyondTrust Remote Support and Privileged Remote Access. Improper validation of authentication data may allow a network-positioned attacker to bypass access controls and gain unauthorized access to the appliance, including accounts with elevated privileges. Exploitation requires a specific authentication configuration to be enabled
- 대응 우선순위
- 점검
- CVSS
- 9.2
- EPSS
- 0.44% 백분위 36.3% · 2026.08.04 기준
- CISA KEV
- 미등록
- 조치 기한
- -
- 공개일
- 2026.07.07