CVE Database
/

CVE-2025-4493

Back to search

CVE-2025-4493

Published: May 28, 2025

Modified: May 28, 2025

PUBLISHED

Description

Improper privilege assignment in PAM JIT privilege sets in Devolutions Server allows a PAM user to perform PAM JIT requests on unauthorized groups by exploiting a user interface issue. This issue affects the following versions :  * Devolutions Server 2025.1.3.0 through 2025.1.7.0 * Devolutions Server 2024.3.15.0 and earlier

VendorProductVersions

Devolutions

Server

affected
2025.1.3.0 - <= 2025.1.7.0
affected
0 - <= 2024.3.15.0

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now