TROYANOSYVIRUS
Retour aux CVEs

CVE-2023-5765

CRITICAL
9.8

Description

Improper access control in the password analyzer feature in Devolutions Remote Desktop Manager 2023.2.33 and earlier on Windows allows an attacker to bypass permissions via data source switching.

Details CVE

Score CVSS v3.19.8
SeveriteCRITICAL
Vecteur CVSSCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Vecteur d'attaqueNETWORK
ComplexiteLOW
Privileges requisNONE
Interaction utilisateurNONE
Publie11/1/2023
Derniere modification11/21/2024
Sourcenvd
Observations honeypot0

Produits affectes

devolutions:remote_desktop_managermicrosoft:windows

Correlations IOC

Aucune correlation enregistree

This product uses data from the NVD API but is not endorsed or certified by the NVD.