Security & compliance

Upholding the highest standards to protect your data and ensure trust.

DEVO-2022-0012

The MSI installers for Devolutions Server Console and Remote Desktop Manager were vulnerable to a local privilege escalation.

This issue is caused by a vulnerability in the Advanced Installer product.The following Advanced Installer release fixes this issue :https://www.advancedinstaller.com/release-20.1.html

Affected Products

Devolutions Server
Console 2022.3.4 and earlier
Remote Desktop Manager
2022.3.23 and earlier

Change Log

Initial Publication - 2022-11-25

High - CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Local privilege escalation in RDM and DVLS installers.

The version of Advanced Installer used to generate Remote Desktop Manager and Devolutions Server MSI installer files was vulnerable to a privilege escalation.

Affected Products

CVE(s)

CVE-2023-25396

Remediation and Workarounds

Upgrade to Devolutions Server Console to 2022.3.5 and higher

Upgrade to Remote Desktop Manager to 2022.3.24 and higher

Devolutions Logo

Helping organizations control the IT chaos by providing highly-secure password, remote connection and privileged access management solutions.

DEVOLUTIONS

Legal & privacy | infos@devolutions.net

All rights reserved © 2025 Devolutions