ZeroHour

CVE-2026-11890

CVSS 3.1
4.3 medium
EPSS
<1%p14
Published
()
Modified
Description

Improper access control in PAM account discovery results in Devolutions Server 2026.2.5, 2026.1.21 allows an authenticated user to retrieve account discovery scan results.

Vendors
devolutions
Products
devolutions server
Weakness
CWE-882, CWE-284
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N

In the news

No ingested article mentions this CVE yet.