Devolutions PowerShell Universal是加拿大Devolutions公司的一个应用服务器组件。 Devolutions PowerShell Universal 2026.2.2及之前版本存在代码注入漏洞,该漏洞源于代码注入问题,变量特性中对变量值未正确转义,导致具有变量写权限的认证用户可以执行任意PowerShell代码。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Devolutions | PowerShell Universal | < 2026.2.3 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Devolutions | PowerShell Universal | 0 ~ 2026.2.3 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-16802 | Devolutions PowerShell Universal 加密问题漏洞 | |
| CVE-2026-16798 | Devolutions PowerShell Universal 信息泄露漏洞 | |
| CVE-2026-16799 | Devolutions PowerShell Universal 授权问题漏洞 | |
| CVE-2026-16800 | Devolutions PowerShell Universal 代码注入漏洞 |
No comments yet