CVE-2024-12148
4.3MEDIUMIncorrect authorization in permission validation component in Devolutions Server 2024.3.6.0 and earlier allows an authenticated user to access some reporting endpoints.
Опубликовано: 12/4/2024Обновлено: 3/28/2025
Описание
Incorrect authorization in permission validation component in Devolutions Server 2024.3.6.0 and earlier allows an authenticated user to access some reporting endpoints.
ИИ-АнализНа базе ИИ
Затронутые продукты
devolutionsdevolutions_server
Ссылки
- https://devolutions.net/security/advisories/DEVO-2024-0017Vendor Advisory