CVE Published: 16/10/2023 |
CVE Updated: 16/09/2024 |
CVE Year: 2023 Source: DEVOLUTIONS |
Vendor: Devolutions |
Product: Server Status : PUBLISHED
CVE-2023-5575 Description
Improper access control in the permission inheritance in Devolutions Server 2022.3.13.0 and earlier allows an attacker that compromised a low privileged user to access entries via a specific combination of permissions in the entry and in its parent.