CVE 5.4 MEDIUM

CVE-2026-9522_CVE-2026-9522

5.4 / 10
MEDIUM
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N

Description

Improper access control in the PAM account discovery feature in Devolutions Server 2026.1.19 and earlier allows an authenticated user without administrative privileges to delete network discovery scan configurations.

Basic Information

ID CVE-2026-9522
Source DEVOLUTIONS
Published Jun 2, 2026 at 14:08
Modified Jun 2, 2026 at 19:37

Affected Product

Vendor Devolutions
Product Server
Affected Versions Devolutions Server 0

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.