Devolutions Server是加拿大Devolutions公司的服务器设备。 Devolutions Server存在信息泄露漏洞,该漏洞源于在Recovery Kit响应文件生成功能中将敏感信息插入文件,即使选择了排除敏感数据的选项,攻击者访问生成的响应文件后仍可以明文获取Azure Key Vault客户端密钥。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Devolutions | Server | < 2026.1.23 |
affected |
< 2026.2.12 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Devolutions | Server | 0 ~ 2026.1.23 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-15637 | Devolutions Server 授权问题漏洞 | |
| CVE-2026-15058 | Devolutions Server 授权问题漏洞 | |
| CVE-2026-15641 | Devolutions Server 授权问题漏洞 |
No comments yet