cve/2025/CVE-2025-4493.md
2025-09-29 21:09:30 +02:00

951 B

CVE-2025-4493

Description

Improper privilege assignment in PAM JIT privilege sets in Devolutions Server allows a PAM user to perform PAM JIT requests on unauthorized groups by exploiting a user interface issue.This issue affects the following versions :  * Devolutions Server 2025.1.3.0 through 2025.1.7.0 * Devolutions Server 2024.3.15.0 and earlier

POC

Reference

Github

No PoCs found on GitHub currently.