Vulnerabilities (CVE)

Filtered by vendor Beyondtrust Subscribe
Filtered by product Beyondinsight
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2024-4219 1 Beyondtrust 1 Beyondinsight 2024-06-11 N/A 9.1 CRITICAL
Prior to 23.2, it is possible to perform arbitrary Server-Side requests via HTTP-based connectors within BeyondInsight, resulting in a server-side request forgery vulnerability.
CVE-2024-4220 1 Beyondtrust 1 Beyondinsight 2024-06-11 N/A 5.3 MEDIUM
Prior to 23.1, an information disclosure vulnerability exists within BeyondInsight which can allow an attacker to enumerate usernames.