Security & compliance

Upholding the highest standards to protect your data and ensure trust.

DEVO-2023-0014

Devolutions Server is affected by a security vulnerability.

Affected Products

Devolutions Server
2023.1.8 and earlier

Change Log

Initial publication - 2023-06-20

Medium - CVSS:3.1/AV:N/AC:H/PR:H/UI:R/S:U/C:H/I:N/A:N 4.2

Improper deletion of resource in the user management feature

Improper deletion of resource in the user management feature in Devolutions Server 2023.1.8 and earlier allows an administrator to view users vaults of deleted users via database access.

Affected Products

CVE(s)

CVE-2023-2400

Remediation and Workarounds

Upgrade to Devolutions Server 2023.2.1 and higher