Filters

Devolutions Remote Desktop ManagerAn information exposure in Devolutions Remote Desktop Manager 2024.2.20.0 and earlier on Windows all…

EPSS
0.04%
First published (updated )

Devolutions Devolutions ServerAuthorization bypass in the PAM access request approval mechanism in Devolutions Server 2024.2.10 an…

First published (updated )

Devolutions Remote Desktop ManagerXSS

First published (updated )

Devolutions Remote Desktop Manager Inadequate validation of permissions when employing remote tools and macros via the context menu w…

EPSS
0.04%
First published (updated )

Devolutions Remote Desktop Manager Client side permission bypass in Devolutions Remote Desktop Manager 2023.3.4.0 and earlier on iOS …

EPSS
0.09%
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Devolutions Workspace Offline mode is always enabled, even if permission disallows it, in Devolutions Server data sour…

EPSS
0.05%
First published (updated )

Devolutions Remote Desktop ManagerCode Injection

7.8
EPSS
0.04%
First published (updated )

Devolutions Devolutions ServerInfoleak

EPSS
0.05%
First published (updated )

Devolutions Devolutions ServerImproper access control in Report log filters feature in Devolutions Server 2023.2.10.0 and earlier …

First published (updated )

Devolutions Remote Desktop ManagerImproper access control in the password analyzer feature in Devolutions Remote Desktop Manager 2023.…

EPSS
0.09%
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Devolutions Remote Desktop Manager A remote code execution vulnerability in Remote Desktop Manager 2023.2.33 and earlier on Windows a…

EPSS
0.24%
First published (updated )

Devolutions Devolutions Server Improper access control in the permission inheritance in Devolutions Server 2022.3.13.0 and earlie…

First published (updated )

Devolutions Devolutions ServerImproper access control in PAM propagation scripts in Devolutions Server 2023.2.8.0 and ealier allow…

7.5
First published (updated )

Devolutions Remote Desktop ManagerImproper access controls in the entry duplication component in Devolutions Remote Desktop Manager 20…

First published (updated )

Devolutions Remote Desktop Manager Inadequate validation of permissions when employing remote tools and macros within Devolutions Remo…

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Devolutions Devolutions ServerImproper deletion of resource in the user management feature in Devolutions Server 2023.1.8 and ear…

2.7
First published (updated )

Devolutions Devolutions ServerImproper access control in Subscriptions Folder path filter in Devolutions Server 2023.1.1 and earli…

First published (updated )

Devolutions Remote Desktop ManagerImproper access control in the Web Login listener in Devolutions Remote Desktop Manager 2023.1.22 an…

First published (updated )

Devolutions WorkspaceAuthentication Bypass in Hub Business integration in Devolutions Workspace Desktop 2023.1.1.3 and ea…

7.8
First published (updated )

Devolutions Devolutions ServerInsufficient access control in support ticket feature in Devolutions Server 2023.1.5.0 and below all…

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Devolutions Remote Desktop ManagerNo access control for the OTP key on OTP entries

First published (updated )

Devolutions Remote Desktop ManagerTwo factor authentication bypass on login in Devolutions Remote Desktop Manager 2022.3.35 and ear…

First published (updated )

Devolutions Devolutions ServerPermission bypass when importing or synchronizing entries in User vault in Devolutions Server 2022.3…

First published (updated )

Devolutions Remote Desktop ManagerPermission bypass when importing or synchronizing entries in User vault in Devolutions Remote Deskto…

First published (updated )

Devolutions Devolutions GatewayUncontrolled resource consumption in the logging feature in Devolutions Gateway 2023.1.1 and earlier…

7.5
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Devolutions Remote Desktop Manager WindowsInformation disclosure in the user creation feature of a MSSQL data source in Devolutions Remote Des…

First published (updated )

Devolutions Devolutions ServerImproper access control in the secure messages feature in Devolutions Server 2022.3.12 and below all…

First published (updated )

Devolutions Remote Desktop ManagerImproper removal of sensitive data in the entry edit feature of Hub Business submodule in Devolution…

First published (updated )

Devolutions Devolutions ServerImproper access controls on entries in Devolutions Server 2022.3.12 and earlier could allow an authe…

First published (updated )

Devolutions Devolutions ServerImproper access controls on some API endpoints in Devolutions Server 2022.3.12 and earlier could all…

8.8
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Devolutions Devolutions ServerSQL Injection

8.8
First published (updated )

Devolutions Devolutions ServerImproper access control in Devolutions Server allows an authenticated user to access unauthorized se…

First published (updated )

Devolutions Remote Desktop ManagerThe force offline MFA prompt setting is not respected when switching to offline mode in Devolutions …

3.3
First published (updated )

Devolutions Remote Desktop ManagerWeak password derivation for export in Devolutions Remote Desktop Manager before 2022.1 allows infor…

7.5
First published (updated )

Devolutions Remote Desktop ManagerAuthentication bypass in local application lock feature in Devolutions Remote Desktop Manager 2022.3…

8.8
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Devolutions Remote Desktop ManagerElevation of privilege in the Azure SQL Data Source in Devolutions Remote Desktop Manager 2022.3.13 …

8.8
First published (updated )

Devolutions Devolutions ServerDashlane password and Keepass Server password in My Account Settings are not encrypted in the databa…

First published (updated )

Devolutions Remote Desktop ManagerDatabase connections on deleted users could stay active on MySQL data sources in Remote Desktop Mana…

7.5
First published (updated )

Devolutions Remote Desktop ManagerImproper Access Control vulnerability in the Duo SMS two-factor of Devolutions Remote Desktop Manage…

First published (updated )

Devolutions Devolutions ServerIncorrect permission management in Devolutions Server before 2022.2 allows a new user with a preexis…

8.8
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Devolutions Devolutions ServerXSS

First published (updated )

Devolutions Remote Desktop ManagerInfoleak

First published (updated )

Devolutions Remote Desktop ManagerPath Traversal

7.5
First published (updated )

Devolutions Remote Desktop ManagerA lack of password masking in Devolutions Remote Desktop Manager allows physically proximate attacke…

First published (updated )

Devolutions Password HubThe biometric lock in Devolutions Password Hub for iOS before 2021.3.4 allows attackers to access th…

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Devolutions Remote Desktop ManagerAn incomplete permission check on entries in Devolutions Remote Desktop Manager before 2021.2.16 all…

8.8
First published (updated )

Devolutions Devolutions ServerDevolutions Server before 2021.1.18, and LTS before 2020.3.20, allows attackers to intercept private…

First published (updated )

Devolutions Devolutions ServerSQL Injection

7.2
First published (updated )

Devolutions Devolutions ServerAn overly permissive CORS policy in Devolutions Server before 2021.1 and Devolutions Server LTS befo…

First published (updated )

Devolutions Remote Desktop ManagerXSS

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2024 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203