CVE-2025-0691 - CERT CVE
ID CVE-2025-0691
Sažetak Improper access control in permissions component in Devolutions Server 2025.1.10.0 and earlier allows an authenticated user to bypass the "Edit permission" permission by bypassing the client side validation.
Reference
CVSS
Base: 5.0
Impact: 1.4
Exploitability:3.1
Pristup
VektorSloženostAutentikacija
NETWORK LOW LOW
Impact
PovjerljivostCjelovitostDostupnost
NONE LOW NONE
CVSS vektor CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:N/I:L/A:N
Zadnje važnije ažuriranje 05-06-2025 - 20:12
Objavljeno 05-06-2025 - 14:15