Sécurité et conformité
DEVO-2023-0012
Résumé
Remote Desktop Manager Windows is affected by a security vulnerability.
Produits affectés
Remote Desktop Manager Windows 2023.1.22 and earlier.
Journal des modifications
Initial Publication - 2023-04-25
Sévérité
Low
Produit
Remote Desktop Manager Windows
Version corrigée
2023.1.23
Workspace application restriction bypass
Description
Improper access control in the Workspace listener in Devolutions Remote Desktop Manager 2023.1.22 and earlier on Windows allows an authenticated user to bypass administrator-enforced Web Login restrictions and gain access to entries via an unexpected vector.
Mesures correctives et solutions de contournement
Upgrade to Remote Desktop Manager Windows 2023.1.23 and higher.
Sévérité
Low - 3.1 CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:L/I:N/A:N
Produits affectés
Remote Desktop Manager Windows 2023.1.22 and earlier.
CVE(s)
CVE-2023-2282