CVE-2026-40140: High-Severity Pre-Authentication Vulnerability in BeyondTrust Remote Support and Privileged Remote Access
BeyondTrust Remote Support and Privileged Remote Access contain a high-severity pre-authentication vulnerability in the network communication subsystem. Insufficient validation of client-supplied input may allow an unauthenticated remote attacker to trigger a denial-of-service condition affecting appliance availability.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-40140?
CVE-2026-40140 is classified as a high-severity vulnerability.
How do I fix CVE-2026-40140?
To mitigate CVE-2026-40140, update BeyondTrust Remote Support and BeyondTrust Privileged Remote Access to the latest version provided by BeyondTrust.
What impact does CVE-2026-40140 have on my system?
CVE-2026-40140 can allow an unauthenticated remote attacker to trigger a denial-of-service condition in the affected BeyondTrust products.
Which products are affected by CVE-2026-40140?
CVE-2026-40140 affects BeyondTrust Remote Support and BeyondTrust Privileged Remote Access.
When was CVE-2026-40140 published?
CVE-2026-40140 was published on July 6, 2026.