ZeroHour

CVE-2023-0953

CVSS 3.1
8.8 high
EPSS
1%p62
Published
()
Modified
Description

Insufficient input sanitization in the documentation feature of Devolutions Server 2022.3.12 and earlier allows an authenticated attacker to perform an SQL Injection, potentially resulting in unauthorized access to system resources.

Vendors
devolutions
Products
devolutions server
Weakness
CWE-89
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.