PT-2026-55951 · Beyondtrust · Remote Support

CVE-2026-40139

·

Published

2026-07-06

·

Updated

2026-08-11

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions BeyondTrust Remote Support (affected versions not specified)
Description A critical pre-authentication flaw exists in the authentication subsystem. Improper processing of authentication requests allows an unauthenticated remote attacker to bypass access controls and gain unauthorized access to the appliance, potentially acquiring accounts with elevated privileges. This issue requires a specific authentication configuration to be enabled for exploitation.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Improper Authentication

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-40139

Affected Products

Remote Support