Security Advisory

CVE-2024-12196

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-12-04 17:17:06
Last updated 2024-12-04 21:13:37
Assigner DEVOLUTIONS
State PUBLISHED

Description

Incorrect authorization in the permission component in Devolutions Server 2024.3.7.0 and earlier allows an authenticated user to view the password history of an entry without the view password permission.