GHSA-xp86-5592-qh57HighCVSS 8.3

Improper certificate validation on LDAPS connections to Active Directory in Devolutions Server...

Published
September 15, 2026
Last Modified
September 20, 2026

🔗 CVE IDs covered (1)

📋 Description

Improper certificate validation on LDAPS connections to Active Directory in Devolutions Server 2026.2.16 and earlier allows a network-positioned attacker to intercept privileged directory service credentials via a spoofed domain controller certificate.

🔗 References (3)