CVE-2024-11670
25.11.2024, 15:15
Incorrect authorization in the permission validation component of Devolutions Remote Desktop Manager 2024.2.21 and earlier on Windows allows a malicious authenticated user to bypass the "View Password" permission via specific actions.Enginsight
Vendor | Product | Version |
---|---|---|
devolutions | remote_desktop_manager | 𝑥 ≤ 2024.3.10.0 |
devolutions | remote_desktop_manager | 𝑥 ≤ 2024.3.10.0 |
𝑥
= Vulnerable software versions