Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-3mp7-3wf9-mp89

Опубликовано: 07 дек. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 6.5

Описание

Offline mode is always enabled, even if permission disallows it, in Devolutions Server data source in Devolutions Workspace 2023.3.2.0 and earlier. This allows an attacker with access to the Workspace application to access credentials when offline.

Offline mode is always enabled, even if permission disallows it, in Devolutions Server data source in Devolutions Workspace 2023.3.2.0 and earlier. This allows an attacker with access to the Workspace application to access credentials when offline.

EPSS

Процентиль: 56%
0.00339
Низкий

6.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 6.5
nvd
около 2 лет назад

Offline mode is always enabled, even if permission disallows it, in Devolutions Server data source in Devolutions Workspace 2023.3.2.0 and earlier. This allows an attacker with access to the Workspace application to access credentials when offline.

EPSS

Процентиль: 56%
0.00339
Низкий

6.5 Medium

CVSS3