All intelligence
// vulnerability record
cached · NVD via COSMOS syncCVE-2026-12105
NONEpublished 2026-06-16 20:16 UTC · 9 days ago · modified 2026-06-16 20:41 UTC
CVSS / 10
// description
Improper access control in Devolutions Server 2026.2.5, 2026.1.21 allows an authenticated user to access attachments via folder duplication with inherited permissions.
// weaknesses (CWE)
- CWE-862