Security & Compliance

DEVO-2024-0003

Summary

Devolutions Workspace is affected by a vulnerability

Affected Products

Devolutions Workspace 2024.1.0 and earlier

Change Log

2024-03-07 - Initial publication
2024-03-08 - Adjusted CVSS score

Severity

Low

Product

Devolutions Workspace

Fix Version

2024.1.1

Improper access control in Devolutions Workspace user interface

Description

Improper access control in the user interface in Devolutions Workspace 2024.1.0 and earlier allows an authenticated user to perform unintended actions via specific permissions

Remediation and Workarounds

Upgrade to Devolutions Workspace 2024.1.1 or higher

Severity

2.0 Low - CVSS:4.0/AV:L/AC:L/AT:P/PR:L/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/U:Green

Affected Products

Devolutions Workspace 2024.1.0 and earlier

CVE(s)

CVE-2024-2241