CVE-2023-5765
9.8
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 3.9 / Impact: 5.9
Source: NVD
Description
Improper access control in the password analyzer feature in Devolutions Remote Desktop Manager 2023.2.33 and earlier on Windows allows an attacker to bypass permissions via data source switching.
Affected (1)
Products: Devolutions: Remote Desktop Manager
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 2023.2.33 |
| Running on/with | Platform Versions |
|---|---|
Microsoft Windows | All versions |
References (2)
Source: security@devolutions.net
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Timeline
No history available yet.