CVE-2025-5382

Publication date

2025-06-05 13:37:05

Family

DEVOLUTIONS

State

PUBLISHED

Description

Improper access control in users MFA feature in Devolutions Server 2025.1.7.0 and earlier allows a user with user management permission to remove or change administrators MFA.