CVE-2025-8353 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

UI synchronization issue in the Just-in-Time (JIT) access request approval interface in Devolutions Server 2025.2.4.0 and earlier allows a remote authenticated…
Medium CVSS: 5.9

CVE-2025-8353

UI synchronization issue in the Just-in-Time (JIT) access request approval interface in Devolutions Server 2025.2.4.0 and earlier allows a remote authenticated attacker to gain unauthorized access to deleted JIT Groups via stale UI state during standard checkout request processing.
Vendor
Devolutions
Product
Devolutions Server
CWE
CWE-446
Yayın Tarihi
2025-07-30 16:15:29
Güncelleme
2025-08-06 14:37:13
Source Identifier
security@devolutions.net
KEV Date Added
-

Kategoriler

Referanslar