CVE-2026-12161
EUVD-2026-3702316.06.2026, 01:16
Improper input validation in the SSH Elevate Shell feature in Devolutions Remote Desktop Manager 2026.2.7 allows an authenticated user with permission to create or modify a shared SSH entry to execute arbitrary commands on a remote SSH host using stored elevation credentials via a crafted alternate username and user interaction with the Elevate Shell action.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| devolutions | remote_desktop_manager | 𝑥 < 2026.2.8.0 |
𝑥
= Vulnerable software versions
Vulnerability Media Exposure