Improper access control in the Web Login listener in Devolutions Remote Desktop Manager 2023.1.22 and earlier on Windows allows an authenticated user to bypass administrator-enforced Web Login restrictions and gain access to entries via an unexpected vector.
Metrics
Affected Vendors & Products
References
| Link | Providers |
|---|---|
| https://devolutions.net/security/advisories/DEVO-2023-0012 |
|
History
Tue, 04 Feb 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
ssvc
|
Status: PUBLISHED
Assigner: DEVOLUTIONS
Published: 2023-04-25T18:23:00.287Z
Updated: 2025-02-04T14:25:24.760Z
Reserved: 2023-04-25T15:07:46.309Z
Link: CVE-2023-2282
Updated: 2024-08-02T06:19:14.866Z
Status : Modified
Published: 2023-04-25T19:15:11.100
Modified: 2025-02-04T15:15:17.270
Link: CVE-2023-2282
No data.