CVE-2023-7047: Medium severity microsoft windows operating system vulnerability
Inadequate validation of permissions when employing remote tools and macros via the context menu within Devolutions Remote Desktop Manager versions 2023.3.31 and earlier permits a user to initiate a connection without proper execution rights via the remote tools feature. This affects only SQL data sources.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-7047?
CVE-2023-7047 is classified as a medium severity vulnerability due to inadequate permission validation.
How do I fix CVE-2023-7047?
To fix CVE-2023-7047, update Devolutions Remote Desktop Manager to version 2023.3.32 or later, which addresses this vulnerability.
What impact does CVE-2023-7047 have on users?
CVE-2023-7047 allows users to initiate remote connections without proper execution rights, posing a risk to system security.
Which versions of Devolutions Remote Desktop Manager are affected by CVE-2023-7047?
CVE-2023-7047 affects Devolutions Remote Desktop Manager versions up to and including 2023.3.31.
What software does CVE-2023-7047 affect?
CVE-2023-7047 affects Devolutions Remote Desktop Manager running on Microsoft Windows systems.