CVE-2022-4287

EUVD-2022-51643
Authentication bypass in local application lock feature in Devolutions Remote Desktop ManagerĀ  2022.3.26 and earlier on Windows allows malicious user to access the application.

ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
8.8 HIGH
NETWORK
LOW
LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CISA-ADPADP
8.8 HIGH
NETWORK
LOW
LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: 58%
Affected Products (NVD)
VendorProductVersion
devolutionsremote_desktop_manager
𝑥
< 2022.3.27
𝑥
= Vulnerable software versions