MAIN MENU

Security & compliance

Upholding the highest standards to protect your data and ensure trust.

DEVO-2023-0014

Devolutions Server is affected by a security vulnerability.

Affected Products

Devolutions Server
2023.1.8 and earlier

Change Log

Initial publication - 2023-06-20

Improper deletion of resource in the user management feature

Medium - CVSS:3.1/AV:N/AC:H/PR:H/UI:R/S:U/C:H/I:N/A:N 4.2

Improper deletion of resource in the user management feature in Devolutions Server 2023.1.8 and earlier allows an administrator to view users vaults of deleted users via database access.

CVE(s)

CVE-2023-2400

Remediation and Workarounds

Upgrade to Devolutions Server 2023.2.1 and higher