Privilege Management For Windows
Vendor:
First CVE: Nov 19, 2021 · Active for 4 years
13
Total CVEs
More Total CVEs than 92% of tracked products
2.6
Avg CVEs / Year
Higher CVE frequency than 78% of tracked products
7.3
Avg CVSS
Higher Avg CVSS than 49% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Privilege Management For Windows over time
Volume of CVEsAvg CVSS Base Score
First CVE
Nov 19, 2021
4 years ago
Most Recent CVE
Feb 2, 2026
176 days ago
CVE Severity & Scoring
Privilege Management For Windows13 CVEs
23%
69%
All CVEs353,240 CVEs
45%
40%
11%
LowMediumHigh
Attack Vector
Local12 (92.3%)
Network1 (7.7%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low13 (100.0%)
High0 (0.0%)
Unknown0 (0.0%)
User Interaction
None13 (100.0%)
Unknown0 (0.0%)
Required0 (0.0%)
Privileges Required
Low10 (76.9%)
High3 (23.1%)
None0 (0.0%)
Unknown0 (0.0%)
Top CVEs
Signals from CVEs in this product scope (13 CVEs).
13 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2025-2297HIGH Prior to version 25.4.270.0, a local authenticated attacker can manipulate user profile files to add illegitimate challenge response codes into the local user registry under certai | Jul 28, 2025 | 7.8 | 27 | NO | NO |
CVE-2021-42254HIGH BeyondTrust Privilege Management prior to version 21.6 creates a Temporary File in a Directory with Insecure Permissions. | Nov 19, 2021 | 7.8 | 25 | NO | NO |
CVE-2025-0889HIGH Prior to 25.2, a local authenticated attacker can elevate privileges on a system with Privilege Management for Windows installed, via the manipulation of COM objects under certain | Feb 26, 2025 | 7.8 | 24 | NO | NO |
CVE-2026-1232MEDIUM A medium-severity vulnerability has been identified in BeyondTrust Privilege Management for Windows versions <=25.7. Under certain conditions, a local authenticated user with eleva | Feb 2, 2026 | 6.8 | 23 | NO | NO |
CVE-2025-6250MEDIUM Prior to 25.4.270.0, when wmic.exe is elevated with a full admin token the user can stop the Defendpoint service, bypassing anti-tamper protections. Once the service is disabled, t | Jul 28, 2025 | 6.7 | 23 | NO | NO |
CVE-2024-25083HIGH An issue was discovered in BeyondTrust Privilege Management for Windows before 24.1. When an low-privileged user initiates a repair, there is an attack vector through which the use | Feb 16, 2024 | 7.8 | 22 | NO | NO |
CVE-2020-12615HIGH An issue was discovered in BeyondTrust Privilege Management for Windows through 5.6. When adding the Add Admin token to a process, and specifying that it runs at medium integrity w | Dec 12, 2023 | 7.8 | 22 | NO | NO |
CVE-2020-12613HIGH An issue was discovered in BeyondTrust Privilege Management for Windows through 5.6. An attacker can spawn a process with multiple users as part of the security token (prior to Ave | Dec 11, 2023 | 8.8 | 22 | NO | NO |
CVE-2020-28369HIGH In BeyondTrust Privilege Management for Windows (aka PMfW) through 5.7, a SYSTEM installation causes Cryptbase.dll to be loaded from the user-writable location %WINDIR%\Temp. | Dec 12, 2023 | 7.8 | 19 | NO | NO |
CVE-2020-12614HIGH An issue was discovered in BeyondTrust Privilege Management for Windows through 5.6. If the publisher criteria is selected, it defines the name of a publisher that must be present | Dec 12, 2023 | 7.8 | 19 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (13 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
Signals from CVEs in this product scope (13 CVEs).
Media Mentions
Signals from CVEs in this product scope (13 CVEs).
Top CNAs Publishing CVEs For Privilege Management For Windows
Top CWEs
Versions
| Version | CVE Count | Avg CVSS | Avg EPSS | KEV | Exploits |
|---|---|---|---|---|---|
| 5.6 | 2 | 7.8 | 0.2% | 0 | 0 |