CVE-2026-30798
- EPSS 0.29%
- Veröffentlicht 05.03.2026 15:38:49
- Zuletzt bearbeitet 22.06.2026 10:16:22
Insufficient Verification of Data Authenticity, Improper Handling of Exceptional Conditions vulnerability in rustdesk-client RustDesk Client rustdesk-client on Windows, MacOS, Linux, iOS, Android (Heartbeat sync loop, strategy processing modules) all...
CVE-2026-30797
- EPSS 0.46%
- Veröffentlicht 05.03.2026 15:35:08
- Zuletzt bearbeitet 25.03.2026 16:16:29
Missing Authorization vulnerability in rustdesk-client RustDesk Client rustdesk-client on Windows, MacOS, Linux, iOS, Android (Flutter URI scheme handler, config import modules) allows Application API Message Manipulation via Man-in-the-Middle. This ...
CVE-2026-30796
- EPSS 0.41%
- Veröffentlicht 05.03.2026 15:30:39
- Zuletzt bearbeitet 19.07.2026 12:16:48
Cleartext Transmission of Sensitive Information, Insufficiently Protected Credentials vulnerability in rustdesk-client RustDesk Client rustdesk-client on Windows, MacOS, Linux, iOS, Android (Address book sync, Heartbeat sync loop modules) allows Snif...
CVE-2026-30795
- EPSS 0.27%
- Veröffentlicht 05.03.2026 15:27:16
- Zuletzt bearbeitet 25.03.2026 15:25:40
Cleartext Transmission of Sensitive Information vulnerability in rustdesk-client RustDesk Client rustdesk-client on Windows, MacOS, Linux, iOS, Android (Heartbeat sync loop modules) allows Sniffing Attacks. This vulnerability is associated with progr...
CVE-2026-30794
- EPSS 0.31%
- Veröffentlicht 05.03.2026 15:24:34
- Zuletzt bearbeitet 22.06.2026 14:17:10
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2026-30793
- EPSS 0.31%
- Veröffentlicht 05.03.2026 15:21:03
- Zuletzt bearbeitet 25.03.2026 15:34:35
Cross-Site Request Forgery (CSRF) vulnerability in rustdesk-client RustDesk Client rustdesk-client on Windows, MacOS, Linux, iOS, Android (Flutter URI scheme handler, FFI bridge modules) allows Privilege Escalation. This vulnerability is associated w...
CVE-2026-30791
- EPSS 0.24%
- Veröffentlicht 05.03.2026 15:16:14
- Zuletzt bearbeitet 18.03.2026 19:25:01
Use of a Broken or Risky Cryptographic Algorithm vulnerability in rustdesk-client RustDesk Client rustdesk-client on Windows, MacOS, Linux, iOS, Android, WebClient (Config import, URI scheme handler, CLI --config modules) allows Retrieve Embedded Sen...
CVE-2026-30792
- EPSS 0.27%
- Veröffentlicht 05.03.2026 15:14:43
- Zuletzt bearbeitet 22.06.2026 14:17:10
A vulnerability in rustdesk-client RustDesk Client rustdesk-client on Windows, MacOS, Linux, iOS, Android, WebClient (Strategy sync, HTTP API client, config options engine modules) allows Application API Message Manipulation via Man-in-the-Middle. ...
CVE-2026-3598
- EPSS 0.23%
- Veröffentlicht 05.03.2026 14:14:11
- Zuletzt bearbeitet 25.03.2026 16:35:12
Use of a Broken or Risky Cryptographic Algorithm vulnerability in rustdesk-server-pro RustDesk Server Pro rustdesk-server-pro on Windows, MacOS, Linux (Config string generation, web console export modules) allows Retrieve Embedded Sensitive Data. Thi...
CVE-2024-25140
- EPSS 0.51%
- Veröffentlicht 06.02.2024 09:15:52
- Zuletzt bearbeitet 21.11.2024 09:00:19
A default installation of RustDesk 1.2.3 on Windows places a WDKTestCert certificate under Trusted Root Certification Authorities with Enhanced Key Usage of Code Signing (1.3.6.1.5.5.7.3.3), valid from 2023 until 2033. This is potentially unwanted, e...