BeyondTrust PRA connection takeover – CVE-2025-0217 – Full Disclosure

Posted by Paul Szabo via Fulldisclosure on May 06
=== Details ========================================================
Vendor: BeyondTrust
Product: Privileged Remote Access (PRA)
Subject: PRA connection takeover
CVE ID: CVE-2025-0217
CVSS: 7.8 (high) CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Author: Paul Szabo <psz () maths usyd edu au>
Date: 2025-05-05
=== Introduction ===================================================
I noticed an issue in
BeyondTrust Privileged…
– Read More – Full Disclosure