CyberRota Analysis
This is a high severity vulnerability with a CVSS score of 8.4. See the original NVD description below for full technical details.
CVE
CVE-2025-11957
Severity
HIGH
CVSS
8.4
EPSS
0.30%
Original NVD Description
Improper authorization in the temporary access workflow of Devolutions Server 2025.2.12.0 and earlier allows an authenticated basic user to self-approve or approve the temporary access requests of other users and gain unauthorized access to vaults and entries via crafted API requests.
Related CVEs
Other vulnerabilities affecting the same vendor(s)