CVE-2023-0951: High severity devolutions server vulnerability
Improper access controls on some API endpoints in Devolutions Server 2022.3.12 and earlier could allow a standard privileged user to perform privileged actions.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2023-0951?
CVE-2023-0951 is a vulnerability in Devolutions Server 2022.3.12 and earlier that allows a standard privileged user to perform privileged actions due to improper access controls on some API endpoints.
How severe is CVE-2023-0951?
CVE-2023-0951 has a severity rating of 8.8 (high).
Which software versions are affected by CVE-2023-0951?
CVE-2023-0951 affects Devolutions Server versions up to and including 2022.3.12.
How can I fix CVE-2023-0951?
To fix CVE-2023-0951, it is recommended to update to a version of Devolutions Server that is not affected by this vulnerability.
Where can I find more information about CVE-2023-0951?
More information about CVE-2023-0951 can be found at the following link: https://devolutions.net/security/advisories/DEVO-2023-0003.