Filtered by vendor Devolutions Subscriptions
Filtered by product Devolutions Server Subscriptions
Total 23 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2023-0953 1 Devolutions 1 Devolutions Server 2024-08-02 8.8 High
Insufficient input sanitization in the documentation feature of Devolutions Server 2022.3.12 and earlier allows an authenticated attacker to perform an SQL Injection, potentially resulting in unauthorized access to system resources.
CVE-2023-0952 1 Devolutions 1 Devolutions Server 2024-08-02 6.5 Medium
Improper access controls on entries in Devolutions Server 2022.3.12 and earlier could allow an authenticated user to access sensitive data without proper authorization.
CVE-2023-0661 1 Devolutions 1 Devolutions Server 2024-08-02 6.5 Medium
Improper access control in Devolutions Server allows an authenticated user to access unauthorized sensitive data.