Offline mode is always enabled, even if permission disallows it, in Devolutions Server data source in Devolutions Workspace 2023.3.2.0 and earlier. This allows an attacker with access to the Workspace application to access credentials when offline.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: DEVOLUTIONS

Published: 2023-12-07T15:59:19.821Z

Updated: 2024-08-02T08:35:14.826Z

Reserved: 2023-12-07T15:41:50.627Z

Link: CVE-2023-6588

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2023-12-07T16:15:07.727

Modified: 2024-11-21T08:44:09.543

Link: CVE-2023-6588

cve-icon Redhat

No data.