CVE-2022-3182: High severity remote desktop manager vulnerability
Published Sep 13, 2022
·Updated
Improper Access Control vulnerability in the Duo SMS two-factor of Devolutions Remote Desktop Manager 2022.2.14 and earlier allows attackers to bypass the application lock. This issue affects: Devolutions Remote Desktop Manager version 2022.2.14 and prior versions.
Affected Software
1 affected component
Devolutions Remote Desktop Manager<2022.2.15
Event History
Sep 13, 2022
CVE Published
via MITRE·07:27 PM
Data Sourced
via MITRE·07:27 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2022-3182.
2
What is the title of this vulnerability?
The title of this vulnerability is "Improper Access Control vulnerability in the Duo SMS two-factor of Devolutions Remote Desktop Manager".
3
What is the severity of CVE-2022-3182?
The severity of CVE-2022-3182 is high (severity value: 7).
4
How does this vulnerability affect Devolutions Remote Desktop Manager?
This vulnerability affects Devolutions Remote Desktop Manager version 2022.2.14 and prior versions.
5
Is there a fix for this vulnerability?
Yes, a fix for this vulnerability is available in version 2022.2.15 of Devolutions Remote Desktop Manager.