Security Advisory
CVE-2025-5382
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
Improper access control in users MFA feature in Devolutions Server 2025.1.7.0 and earlier allows a user with user management permission to remove or change administrators MFA.