CVE-2023-5240
13.10.2023, 13:15
Improper access control in PAM propagation scripts in Devolutions Server 2023.2.8.0 and ealier allows an attack with permission to manage PAM propagation scripts to retrieve passwords stored in it via a GET request.Enginsight
Vendor | Product | Version |
---|---|---|
devolutions | devolutions_server | 𝑥 ≤ 2023.2.8.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration