CVE-2025-4433 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

Improper access control in user group management in Devolutions Server 2025.1.7.0 and earlier allows a non-administrative user with both "User Management" and "…
High CVSS: 8.7

CVE-2025-4433

Improper access control in user group management in Devolutions Server 2025.1.7.0 and earlier allows a non-administrative user with both "User Management" and "User Group Management" permissions to perform privilege escalation by adding users to groups with administrative privileges.
Vendor
Devolutions
Product
Devolutions Server
CWE
CWE-284
Yayın Tarihi
2025-05-30 13:15:24
Güncelleme
2025-11-25 18:15:52
Source Identifier
security@devolutions.net
KEV Date Added
-

Kategoriler

Referanslar