VYPR
Medium severity6.3NVD Advisory· Published Jun 25, 2024· Updated Jun 17, 2026

CVE-2024-4846

CVE-2024-4846

Description

Authentication bypass in the 2FA feature in Devolutions Server 2024.1.14.0 and earlier allows an authenticated attacker to authenticate to another user without being asked for the 2FA via another browser tab.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • Devolutions/Servercpe-rescue3 versions
    0+ 2 more
    • (no CPE)range: 0
    • (no CPE)range: <=2024.1.14.0
    • cpe:2.3:a:devolutions:devolutions_server:*:*:*:*:*:*:*:*range: <2024.1.15.0

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.