Security & compliance

Upholding the highest standards to protect your data and ensure trust.

DEVO-2023-0024

Remote Desktop Manager Windows is affected by a vulnerability.

Affected Products

Remote Desktop Manager
Windows 2023.3.31.0 and earlier.

Change Log

2023-12-21 - Initial publication

Low 2.0 - CVSS:4.0/AV:L/AC:L/AT:P/PR:L/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N/U:Green

Client-side permission bypass using remote tools context menu

Inadequate validation of permissions when employing remote tools and macros via the context menu within Devolutions Remote Desktop Manager versions 2023.3.31 and earlier permits a user to initiate a connection without proper execution rights via the remote tools feature. This affects only SQL data sources.

Affected Products

CVE(s)

CVE-2023-7047

Remediation and Workarounds

Upgrade to Remote Desktop Manager Windows 2023.3.32 or higher

Devolutions Logo

Helping organizations control the IT chaos by providing highly-secure password, remote connection and privileged access management solutions.

DEVOLUTIONS

Legal & privacy | infos@devolutions.net

All rights reserved © 2025 Devolutions