Improper access control in Tor network blocking feature in Devolutions Server 2025.1.10.0 and earlier allows an authenticated user to bypass the tor blocking feature when the Devolutions hosted endpoint is not reachable.
References
Link | Resource |
---|---|
https://devolutions.net/security/advisories/DEVO-2025-0011/ | Vendor Advisory |
Configurations
History
02 Jul 2025, 13:06
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:a:devolutions:devolutions_server:*:*:*:*:*:*:*:* | |
First Time |
Devolutions
Devolutions devolutions Server |
|
References | () https://devolutions.net/security/advisories/DEVO-2025-0011/ - Vendor Advisory | |
Summary |
|
|
CWE | NVD-CWE-noinfo |
05 Jun 2025, 14:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-06-05 14:15
Updated : 2025-07-02 13:06
NVD link : CVE-2025-3768
Mitre link : CVE-2025-3768
CVE.ORG link : CVE-2025-3768
JSON object : View
Products Affected
devolutions
- devolutions_server
CWE