Vulnerabilities (CVE)

Filtered by vendor Devolutions Subscribe
Filtered by product Devolutions Server
Total 24 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-23924 1 Devolutions 1 Devolutions Server 2024-11-21 5.0 MEDIUM 7.5 HIGH
An issue was discovered in Devolutions Server before 2020.3. There is an exposure of sensitive information in diagnostic files.
CVE-2021-23923 1 Devolutions 1 Devolutions Server 2024-11-21 4.9 MEDIUM 8.1 HIGH
An issue was discovered in Devolutions Server before 2020.3. There is Broken Authentication with Windows domain users.
CVE-2021-23921 1 Devolutions 1 Devolutions Server 2024-11-21 6.4 MEDIUM 9.1 CRITICAL
An issue was discovered in Devolutions Server before 2020.3. There is broken access control on Password List entry elements.
CVE-2024-6512 1 Devolutions 1 Devolutions Server 2024-10-01 N/A 6.5 MEDIUM
Authorization bypass in the PAM access request approval mechanism in Devolutions Server 2024.2.10 and earlier allows authenticated users with permissions to approve their own requests, bypassing intended security restrictions, via the PAM access request approval mechanism.