Security & compliance
Upholding the highest standards to protect your data and ensure trust.
DEVO-2023-0014
Devolutions Server is affected by a security vulnerability.
Affected Products
Change Log
Initial publication - 2023-06-20
Improper deletion of resource in the user management feature
Medium - CVSS:3.1/AV:N/AC:H/PR:H/UI:R/S:U/C:H/I:N/A:N 4.2
Improper deletion of resource in the user management feature in Devolutions Server 2023.1.8 and earlier allows an administrator to view users vaults of deleted users via database access.
CVE(s)
CVE-2023-2400
Remediation and Workarounds
Upgrade to Devolutions Server 2023.2.1 and higher