CVE-2024-12148
4.3MEDIUMIncorrect authorization in permission validation component in Devolutions Server 2024.3.6.0 and earlier allows an authenticated user to access some reporting endpoints.
Publicado: 12/4/2024Actualizado: 3/28/2025
Descripción
Incorrect authorization in permission validation component in Devolutions Server 2024.3.6.0 and earlier allows an authenticated user to access some reporting endpoints.
Análisis IAImpulsado por IA
Productos Afectados
devolutionsdevolutions_server
Referencias
- https://devolutions.net/security/advisories/DEVO-2024-0017Vendor Advisory