CVE-2022-1342
- EPSS 0.38%
- Veröffentlicht 15.06.2022 17:15:08
- Zuletzt bearbeitet 21.11.2024 06:40:31
A lack of password masking in Devolutions Remote Desktop Manager allows physically proximate attackers to observe sensitive data. A caching issue can cause sensitive fields to sometimes stay revealed when closing and reopening a panel, which could le...
CVE-2021-42098
- EPSS 1.57%
- Veröffentlicht 18.10.2021 14:15:10
- Zuletzt bearbeitet 21.11.2024 06:27:15
An incomplete permission check on entries in Devolutions Remote Desktop Manager before 2021.2.16 allows attackers to bypass permissions via batch custom PowerShell.
CVE-2021-23922
- EPSS 1.15%
- Veröffentlicht 01.04.2021 22:15:12
- Zuletzt bearbeitet 21.11.2024 05:52:02
An issue was discovered in Devolutions Remote Desktop Manager before 2020.2.12. There is a cross-site scripting (XSS) vulnerability in webviews.
CVE-2021-28047
- EPSS 1.08%
- Veröffentlicht 01.04.2021 21:15:12
- Zuletzt bearbeitet 21.11.2024 05:59:02
Cross-Site Scripting (XSS) in Administrative Reports in Devolutions Remote Desktop Manager before 2021.1 allows remote authenticated users to inject arbitrary web script or HTML via multiple input fields.