CVE-2025-2278
13.03.2025, 13:15
Improper access control in temporary access requests and checkout requests endpoints in Devolutions Server 2024.3.13 and earlier allows an authenticated user to access information about these requests via a known request ID.Enginsight
Vendor | Product | Version |
---|---|---|
devolutions | devolutions_server | 𝑥 < 2025.1.3.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration