Learn about CVE-2020-9326 affecting BeyondTrust Privilege Management for Windows and Mac. Find out how to mitigate the vulnerability and prevent service crashes.
BeyondTrust Privilege Management for Windows and Mac (aka PMWM; formerly Avecto Defendpoint) 5.1 through 5.5 before 5.5 SR1 mishandles command-line arguments with PowerShell .ps1 file extensions present, leading to a DefendpointService.exe crash.
Understanding CVE-2020-9326
This CVE involves a vulnerability in BeyondTrust Privilege Management for Windows and Mac versions 5.1 through 5.5 before 5.5 SR1, which can result in a service crash.
What is CVE-2020-9326?
The vulnerability in BeyondTrust Privilege Management for Windows and Mac allows for mishandling of command-line arguments with PowerShell .ps1 file extensions, potentially causing a crash in DefendpointService.exe.
The Impact of CVE-2020-9326
The vulnerability could be exploited by an attacker to cause a denial of service (DoS) by crashing the DefendpointService.exe service.
Technical Details of CVE-2020-9326
This section provides more technical insights into the CVE.
Vulnerability Description
BeyondTrust Privilege Management for Windows and Mac versions 5.1 through 5.5 before 5.5 SR1 mishandles command-line arguments with PowerShell .ps1 file extensions, leading to a service crash.
Affected Systems and Versions
Exploitation Mechanism
The vulnerability is exploited by manipulating command-line arguments with PowerShell .ps1 file extensions, causing the DefendpointService.exe to crash.
Mitigation and Prevention
Protect your systems from CVE-2020-9326 with these mitigation strategies.
Immediate Steps to Take
Long-Term Security Practices
Patching and Updates