Devolutions Server是加拿大Devolutions公司的服务器设备。 Devolutions Server存在授权问题漏洞,该漏洞源于访问请求状态端点存在授权不当,允许经过身份验证的低权限用户通过直接调用请求状态端点来批准自己的待处理访问请求,绕过所需的审批人审查。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Devolutions | Server | < 2026.1.23 |
affected |
< 2026.2.12 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Devolutions | Server | 0 ~ 2026.1.23 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-15637 | Devolutions Server 授权问题漏洞 | |
| CVE-2026-15642 | Devolutions Server 日志信息泄露漏洞 | |
| CVE-2026-15058 | Devolutions Server 授权问题漏洞 |
No comments yet