8.8
CVE-2024-11621
- EPSS 0.06%
- Veröffentlicht 10.02.2025 14:15:29
- Zuletzt bearbeitet 28.03.2025 16:20:47
- Quelle security@devolutions.net
- CVE-Watchlists
- Unerledigt
Missing certificate validation in Devolutions Remote Desktop Manager on macOS, iOS, Android, Linux allows an attacker to intercept and modify encrypted communications via a man-in-the-middle attack. Versions affected are : Remote Desktop Manager macOS 2024.3.9.0 and earlier Remote Desktop Manager Linux 2024.3.2.5 and earlier Remote Desktop Manager Android 2024.3.3.7 and earlier Remote Desktop Manager iOS 2024.3.3.0 and earlier Remote Desktop Manager Powershell 2024.3.6.0 and earlier
Verknüpft mit AI von unstrukturierten Daten zu bestehenden CPE der NVD
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Devolutions ≫ Remote Desktop Manager SwPlatformlinux Version < 2024.3.2.9
Devolutions ≫ Remote Desktop Manager SwPlatformiphone_os Version < 2024.3.4.0
Devolutions ≫ Remote Desktop Manager SwPlatformandroid Version < 2024.3.4.2
Devolutions ≫ Remote Desktop Manager SwPlatformmacos Version < 2024.3.10.3
Devolutions ≫ Remote Desktop Manager Powershell Version < 2024.3.7
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.06% | 0.177 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| 134c704f-9b21-4f2e-91b3-4a467353bcc0 | 8.8 | 2.8 | 5.9 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
|
CWE-295 Improper Certificate Validation
The product does not validate, or incorrectly validates, a certificate.