CVE-2024-6512: Medium severity devolutions server vulnerability
Authorization bypass in the PAM access request approval mechanism in Devolutions Server 2024.2.10 and earlier allows authenticated users with permissions to approve their own requests, bypassing intended security restrictions, via the PAM access request approval mechanism.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-6512?
CVE-2024-6512 is classified as a critical severity vulnerability due to its potential for unauthorized access.
How do I fix CVE-2024-6512?
To mitigate CVE-2024-6512, upgrade to Devolutions Server version 2024.3.0 or later.
Who is affected by CVE-2024-6512?
CVE-2024-6512 affects all users of Devolutions Server versions 2024.2.10 and earlier.
What type of vulnerability is CVE-2024-6512?
CVE-2024-6512 is an authorization bypass vulnerability related to the PAM access request approval mechanism.
Can authenticated users exploit CVE-2024-6512?
Yes, any authenticated user with permissions can exploit CVE-2024-6512 to approve their own requests.