Vulnerability Description
BeyondTrust Privilege Management for Windows and Mac (aka PMWM; formerly Avecto Defendpoint) 5.1 through 5.5 before 5.5 SR1 mishandles command-line arguments with PowerShell .ps1 file extensions present, leading to a DefendpointService.exe crash.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Beyondtrust | Privilege Management For Windows And Mac | >= 5.1, < 5.5 |
References
- https://www.beyondtrust.com/support/changelog/privilege-management-for-windows-5ProductVendor Advisory
- https://www.beyondtrust.com/support/changelog/privilege-management-for-windows-5ProductVendor Advisory
FAQ
What is CVE-2020-9326?
CVE-2020-9326 is a vulnerability with a CVSS score of 7.5 (HIGH). BeyondTrust Privilege Management for Windows and Mac (aka PMWM; formerly Avecto Defendpoint) 5.1 through 5.5 before 5.5 SR1 mishandles command-line arguments with PowerShell .ps1 file extensions prese...
How severe is CVE-2020-9326?
CVE-2020-9326 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2020-9326?
Check the references section above for vendor advisories and patch information. Affected products include: Beyondtrust Privilege Management For Windows And Mac.