Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
| Link | Providers |
|---|---|
| https://devolutions.net/security/advisories/DEVO-2025-0018/ |
|
Wed, 03 Dec 2025 15:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | NVD-CWE-noinfo | |
| CPEs | cpe:2.3:a:devolutions:devolutions_server:*:*:*:*:*:*:*:* |
Mon, 01 Dec 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
Fri, 28 Nov 2025 09:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Devolutions
Devolutions devolutions Server |
|
| Vendors & Products |
Devolutions
Devolutions devolutions Server |
Thu, 27 Nov 2025 15:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Exposure of email service credentials to users without administrative rights in Devolutions Server.This issue affects Devolutions Server: before 2025.2.21, before 2025.3.9. | |
| Weaknesses | CWE-200 | |
| References |
|
Status: PUBLISHED
Assigner: DEVOLUTIONS
Published:
Updated: 2025-12-01T19:15:37.321Z
Reserved: 2025-11-27T14:55:53.956Z
Link: CVE-2025-13765
Updated: 2025-12-01T18:52:38.957Z
Status : Analyzed
Published: 2025-11-27T16:15:47.387
Modified: 2025-12-03T14:47:18.103
Link: CVE-2025-13765
No data.
OpenCVE Enrichment
Updated: 2025-11-28T08:51:22Z