Medium severity4.3NVD Advisory· Published Mar 5, 2024· Updated Jun 17, 2026
CVE-2024-1898
CVE-2024-1898
Description
Improper access control in the notification feature in Devolutions Server 2023.3.14.0 and earlier allows a low privileged user to change notifications settings configured by an administrator.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:devolutions:devolutions_server:*:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:devolutions:devolutions_server:*:*:*:*:*:*:*:*range: <2024.1.0
- (no CPE)range: <=2023.3.14.0
- (no CPE)range: 0
Patches
Vulnerability mechanics
References
1- devolutions.net/security/advisories/DEVO-2024-0002nvdVendor Advisory
News mentions
0No linked articles in our index yet.