Lucene search

K
cvelistDEVOLUTIONSCVELIST:CVE-2023-6588
HistoryDec 07, 2023 - 3:59 p.m.

CVE-2023-6588

2023-12-0715:59:19
DEVOLUTIONS
www.cve.org
offline mode
devolutions server
workspace application
unauthorized access
credentials

6.6 Medium

AI Score

Confidence

High

0.0005 Low

EPSS

Percentile

18.1%

Offline mode is always enabled, even if permission disallows it, in
Devolutions Server data source in Devolutions Workspace 2023.3.2.0 and
earlier. This allows an attacker with access to the Workspace
application to access credentials when offline.

CNA Affected

[
  {
    "defaultStatus": "unaffected",
    "modules": [
      "Offline Mode",
      "Devolutions Server Data Source"
    ],
    "product": "Workspace",
    "vendor": "Devolutions",
    "versions": [
      {
        "status": "affected",
        "version": "0"
      }
    ]
  }
]

6.6 Medium

AI Score

Confidence

High

0.0005 Low

EPSS

Percentile

18.1%

Related for CVELIST:CVE-2023-6588