CVE-2024-12148 Information

Description

Incorrect authorization in permission validation component in Devolutions Server 2024.3.6.0 and earlier allows an authenticated user to access some reporting endpoints.

Reference

https://devolutions.net/security/advisories/DEVO-2024-0017

Share on: