VYPR
Medium severity6.5NVD Advisory· Published May 17, 2024· Updated Jun 17, 2026

CVE-2024-5072

CVE-2024-5072

Description

Improper input validation in PAM JIT elevation feature in Devolutions Server 2024.1.11.0 and earlier allows an authenticated user with access to the PAM JIT elevation feature to manipulate the LDAP filter query via a specially crafted request.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • Devolutions/Servercpe-rescue3 versions
    0+ 2 more
    • (no CPE)range: 0
    • (no CPE)range: <=2024.1.11.0
    • cpe:2.3:a:devolutions:devolutions_server:*:*:*:*:*:*:*:*range: <2024.1.12.0

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.