ZeroHour

CVE-2023-2445

CVSS 3.1
4.9 medium
EPSS
<1%p60
Published
()
Modified
Description

Improper access control in Subscriptions Folder path filter in Devolutions Server 2023.1.1 and earlier allows attackers with administrator privileges to retrieve usage information on folders in user vaults via a specific folder name.

Vendors
devolutions
Products
devolutions server
Weakness
CWE-346
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.