BeyondTrust Remote Support (RS) and certain older versions of Privileged Remote Access (PRA) contain a critical pre-authentication remote code execution vulnerability. By sending specially crafted requests, an unauthenticated remote attacker may be able to execute operating system commands in the context of the site user.
https://thehackernews.com/2026/08/fbi-disrupts-china-linked-qtfy.html
https://securelist.com/vulnerabilities-and-exploits-in-q2-2026/121091/
https://www.hipaajournal.com/medusa-ransomware/
https://thehackernews.com/2026/07/beyondtrust-patches-critical-auth.html
https://www.huntress.com/blog/uptick-bomgar-exploitation
https://www.darkreading.com/threat-intelligence/storm-1175-medusa-ransomware-high-velocity
https://thehackernews.com/2026/04/china-linked-storm-1175-exploits-zero.html
https://www.securityweek.com/beyondtrust-vulnerability-exploited-in-ransomware-attacks/
https://www.databreachtoday.com/hospitals-at-risk-beyondtrust-ransomware-hacks-a-30818
https://thehackernews.com/2026/02/beyondtrust-flaw-used-for-web-shells.html
https://unit42.paloaltonetworks.com/beyondtrust-cve-2026-1731/
https://www.securityweek.com/beyondtrust-patches-critical-rce-vulnerability/
https://www.helpnetsecurity.com/2026/02/09/beyondtrust-remote-access-vulnerability-cve-2026-1731/
https://thehackernews.com/2026/02/beyondtrust-fixes-critical-pre-auth-rce.html
https://github.com/CVEasy/cveasy-mcp
https://github.com/ridhinva/CVE-2026-1731-BeyondTrust-RCE
https://github.com/ridhinva/Trending-Exploits-May-2026
https://github.com/ridhinva/hermes-vuln-tools
https://github.com/LutfifakeeXone/CVE-2026-1731
https://github.com/jim2478/CVE-Archive
https://github.com/hexissam/CVE-2026-1731
https://github.com/richardpaimu34/CVE-2026-1731
https://github.com/cybrdude/cve-2026-1731-scanner
https://github.com/bytehazard/CVE-2026-1731
https://github.com/z3r0h3ro/CVE-2026-1731-exp
https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2026-1731
https://www.beyondtrust.com/trust-center/security-advisories/bt26-02
https://beyondtrustcorp.service-now.com/csm?id=csm_kb_article&sysparm_article=KB0023293
Published: 2026-02-06
Updated: 2026-02-17
Known Exploited Vulnerability (KEV)
Base Score: 10
Vector: CVSS2#AV:N/AC:L/Au:N/C:C/I:C/A:C
Severity: Critical
Base Score: 9.8
Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Severity: Critical
Base Score: 9.9
Vector: CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:L/SI:H/SA:L
Severity: Critical
EPSS: 0.9029
Tenable Research has classified this CVE under the following Vulnerability Watch classification, which includes active and historical (inactive) classifications. You can learn more about these classifications on our blog.
Vulnerability of Interest