Sécurité et conformité

Nous respectons les normes les plus élevées pour protéger vos données et garantir la confiance.

DEVO-2022-0002

A vulnerability can reduce the strength of some passwords when exporting data in Remote Desktop Manager.

Produits affectés

Remote Desktop Manager
2021.2 and earlier

Journal des modifications

Initial Publication - 2022-03-09

High - CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N

Weak password derivation on vault export

When exporting data out of Remote Desktop Manager, a password can be used to encrypt the file. For passwords that were also valid Base64, Remote Desktop Manager erroneously decoded them prior to password derivation which reduces the effective length of the password.

Produits affectés

CVE(s)

CVE-2022-26964

Mesures correctives et solutions de contournement

Update to Remote Desktop Manager 2022.1 or higher.