MENU PRINCIPAL
Solutions

Packages

blue box

Full power for small teams

All products available in our Starter Pack at half price for teams of 5

Comparer toutes nos solutions

Vue d'ensemble rapide

Personalized trial for 100+ users

Free expert or self-guided proof of concept for up to 90 days

Seamless integrations with RDM

Browse our 100+ integrations and boost your productivity

Sécurité et conformité

Nous respectons les normes les plus élevées pour protéger vos données et garantir la confiance.

DEVO-2024-0010

Remote Desktop Manager is affected by a vulnerability

Produits affectés

Remote Desktop Manager
2024.2.11 and earlier

Journal des modifications

26/06/2024 - Initial publication

2.3 Low - CVSS:4.0/AV:N/AC:L/AT:P/PR:L/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N

Improper access control in PAM dashboard

Improper access control in PAM dashboard in Devolutions Remote Desktop Manager 2024.2.11 and earlier on Windows allows an authenticated user to bypass the execute permission via the use of the PAM dashboard.

Please be advised that the execute permission is a client-side setting. As such, it does not expose any credentials beyond those the user already has access to. Consequently, this is classified as a low-severity issue.

Produits affectés

CVE(s)

CVE-2024-6354

Mesures correctives et solutions de contournement

Upgrade to Remote Desktop Manager 2024.2.12 or higher