Beveiligingsadvies

CVE-2025-4433

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2025-05-30 12:16:03
Laatst bijgewerkt 2025-11-25 17:21:58
Toegewezen door DEVOLUTIONS
CVSS-score 8.8
Status PUBLISHED

Beschrijving

Improper access control in user group management in Devolutions Server 2025.1.7.0 and earlier allows a non-administrative user with both "User Management" and "User Group Management" permissions to perform privilege escalation by adding users to groups with administrative privileges.