CVE-2024-1764: High severity devolutions server vulnerability
Improper privilege management in Just-in-time (JIT) elevation module in Devolutions Server 2023.3.14.0 and earlier allows a user to continue using the elevated privilege even after the expiration under specific circumstances
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-1764?
CVE-2024-1764 is considered a high-severity vulnerability due to improper privilege management that can lead to unauthorized access.
How do I fix CVE-2024-1764?
To fix CVE-2024-1764, update Devolutions Server to version 2023.3.14.1 or later.
What versions of Devolutions Server are affected by CVE-2024-1764?
CVE-2024-1764 affects Devolutions Server versions up to and including 2023.3.14.0.
What is the impact of exploiting CVE-2024-1764?
Exploiting CVE-2024-1764 allows a user to retain elevated privileges beyond the intended expiration, potentially compromising the system.
Is there a workaround for CVE-2024-1764?
There is no confirmed workaround for CVE-2024-1764; the recommended action is to apply the software update.