Lucene search

K
prionPRIOn knowledge basePRION:CVE-2023-2257
HistoryApr 24, 2023 - 7:15 p.m.

Authentication flaw

2023-04-2419:15:00
PRIOn knowledge base
www.prio-n.com
2
authentication bypass
devolutions workspace desktop
security flaw
force login feature
hub business integration
vulnerability
windows
macos

7.5 High

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

9.0%

Authentication Bypass in Hub Business integration in Devolutions Workspace Desktop 2023.1.1.3 and earlier on Windows and macOS allows an attacker with access to the user interface to unlock a Hub
Business space without being prompted to enter the password via an
unimplemented β€œForce Login” security feature.

This vulnerability occurs only if β€œForce Login” feature is enabled on the Hub Business instance and that an attacker has access to a locked Workspace desktop application configured with a Hub Business space.

CPENameOperatorVersion
workspacelt2023.1.1.4

7.5 High

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

9.0%

Related for PRION:CVE-2023-2257