CVE-2023-4373: Critical severity remote desktop manager vulnerability
Published Aug 21, 2023
·Updated
Inadequate validation of permissions when employing remote tools and macros within Devolutions Remote Desktop Manager versions 2023.2.19 and earlier permits a user to initiate a connection without proper execution rights via the remote tools feature.
Affected Software
1 affected component
Devolutions Remote Desktop Manager<=2023.2.19
Event History
Aug 21, 2023
CVE Published
via MITRE·06:36 PM
Data Sourced
via MITRE·06:36 PM
Description
Data Sourced
via NVD·07:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID for this vulnerability?
The vulnerability ID is CVE-2023-4373.
2
What is the title of this vulnerability?
The title of this vulnerability is 'Inadequate validation of permissions when employing remote tools and macros within Devolutions Remote Desktop Manager'.
3
What is the severity of CVE-2023-4373?
The severity of CVE-2023-4373 is critical with a score of 9.8.
4
Which software versions are affected by CVE-2023-4373?
Devolutions Remote Desktop Manager versions 2023.2.19 and earlier are affected by CVE-2023-4373.
5
How can I fix the vulnerability CVE-2023-4373?
To fix the vulnerability CVE-2023-4373, it is recommended to update to a version later than 2023.2.19 of Devolutions Remote Desktop Manager.