Unauthorized Access to PAM Entries via Improper Permissions
CVE-2024-2921

Currently unrated

Key Information:

Status
Vendor
CVE Published:
26 March 2024

What is CVE-2024-2921?

Improper access control in PAM vault permissions in Devolutions Server 2024.1.10.0 and earlier allows an authenticated user with access to the PAM to access unauthorized PAM entries via a specific set of permissions.

Affected Version(s)

Server 0 <= 2024.1.6

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.