CVE-2024-0589: XSS
Cross-site scripting (XSS) vulnerability in the entry overview tab in Devolutions Remote Desktop Manager 2023.3.36 and earlier on Windows allows an attacker with access to a data source to inject a malicious script via a specially crafted input in an entry.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-0589?
CVE-2024-0589 has been classified as a high severity cross-site scripting vulnerability.
How do I fix CVE-2024-0589?
To fix CVE-2024-0589, update Devolutions Remote Desktop Manager to version 2023.3.37 or later.
Who is affected by CVE-2024-0589?
CVE-2024-0589 affects Devolutions Remote Desktop Manager versions 2023.3.36 and earlier on Windows.
What is a cross-site scripting vulnerability like CVE-2024-0589?
A cross-site scripting vulnerability like CVE-2024-0589 allows attackers to inject malicious scripts into web pages viewed by other users.
What should I do if I cannot immediately update for CVE-2024-0589?
If you cannot update immediately for CVE-2024-0589, restrict access to the affected data sources to minimize exposure.