Devolutions Server
cpe:2.3:a:devolutions:devolutions_server:*:*:*:*:*:*:*
- <= 2024.3.4
A vulnerability exists in the web extension restriction feature of Devolutions Server versions through 2024.3.4.0. This improper access control allows an authenticated user to bypass restrictions on browser extensions.
Exploitation of this vulnerability allows for the bypass of browser extension restrictions, potentially leading to unauthorized access or actions via the web extension.
Users are advised to upgrade to Devolutions Server version 2024.3.6 or higher.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.