First published: Thu Apr 01 2021(Updated: )
An issue was discovered in Devolutions Server before 2020.3. There is a cross-site scripting (XSS) vulnerability in entries of type Document.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Devolutions Devolutions Server | <2020.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-23925 is an XSS vulnerability in Devolutions Server before version 2020.3.
CVE-2021-23925 allows attackers to execute malicious scripts in the context of a user's browser, potentially leading to unauthorized actions or data theft.
CVE-2021-23925 has a severity rating of 6.1, which is considered medium.
To fix the CVE-2021-23925 vulnerability in Devolutions Server, you should update to version 2020.3 or later.
You can find more information about CVE-2021-23925 in the security advisory published by Devolutions: [link](https://devolutions.net/security/advisories/devo-2021-0002).