← Back

CVE-2024-11621

nvd nist
Published: Feb 10, 2025Modified: Jun 17, 2026

JSON object

Loading...
8.8
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Exploitability: 2.8 / Impact: 5.9
Source: 134c704f-9b21-4f2e-91b3-4a467353bcc0 (Secondary)

Description

Missing certificate validation in Devolutions Remote Desktop Manager on macOS, iOS, Android, Linux allows an attacker to intercept and modify encrypted communications via a man-in-the-middle attack. Versions affected are : Remote Desktop Manager macOS 2024.3.9.0 and earlier Remote Desktop Manager Linux 2024.3.2.5 and earlier Remote Desktop Manager Android 2024.3.3.7 and earlier Remote Desktop Manager iOS 2024.3.3.0 and earlier Remote Desktop Manager Powershell 2024.3.6.0 and earlier

Affected (5)

2 products
Remote Desktop Manager
Remote Desktop Manager Powershell
Configuration A
5 vulnerable
Vulnerable SoftwareAffected Versions
Devolutions
Before 2024.3.4.2
Before 2024.3.4.0
Before 2024.3.2.9
Before 2024.3.10.3
Before 2024.3.7

References (1)

Source: security@devolutions.net
Vendor Advisory

Timeline

No history available yet.