Show filters
252 Total Results
Displaying 31-40 of 252
Sort by:
Attacker Value
Unknown

CVE-2024-38072

Disclosure Date: July 09, 2024 (last updated July 13, 2024)
Windows Remote Desktop Licensing Service Denial of Service Vulnerability
Attacker Value
Unknown

CVE-2024-38071

Disclosure Date: July 09, 2024 (last updated July 12, 2024)
Windows Remote Desktop Licensing Service Denial of Service Vulnerability
Attacker Value
Unknown

CVE-2024-38015

Disclosure Date: July 09, 2024 (last updated July 12, 2024)
Windows Remote Desktop Gateway (RD Gateway) Denial of Service Vulnerability
Attacker Value
Unknown

CVE-2024-6354

Disclosure Date: June 26, 2024 (last updated June 27, 2024)
Improper access control in PAM dashboard in Devolutions Remote Desktop Manager 2024.2.11 and earlier on Windows allows an authenticated user to bypass the execute permission via the use of the PAM dashboard.
0
Attacker Value
Unknown

CVE-2024-6057

Disclosure Date: June 17, 2024 (last updated June 18, 2024)
Improper authentication in the vault password feature in Devolutions Remote Desktop Manager 2024.1.31.0 and earlier allows an attacker that has compromised an access to an RDM instance to bypass the vault master password via the offline mode feature.
0
Attacker Value
Unknown

CVE-2024-6055

Disclosure Date: June 17, 2024 (last updated June 18, 2024)
Improper removal of sensitive information in data source export feature in Devolutions Remote Desktop Manager 2024.1.32.0 and earlier on Windows allows an attacker that obtains the exported settings to recover powershell credentials configured on the data source via stealing the configuration file.
0
Attacker Value
Unknown

CVE-2024-32662

Disclosure Date: April 23, 2024 (last updated April 24, 2024)
FreeRDP is a free implementation of the Remote Desktop Protocol. FreeRDP based clients prior to version 3.5.1 are vulnerable to out-of-bounds read. This occurs when `WCHAR` string is read with twice the size it has and converted to `UTF-8`, `base64` decoded. The string is only used to compare against the redirection server certificate. Version 3.5.1 contains a patch for the issue. No known workarounds are available.
0
Attacker Value
Unknown

CVE-2024-32661

Disclosure Date: April 23, 2024 (last updated April 24, 2024)
FreeRDP is a free implementation of the Remote Desktop Protocol. FreeRDP based clients prior to version 3.5.1 are vulnerable to a possible `NULL` access and crash. Version 3.5.1 contains a patch for the issue. No known workarounds are available.
0
Attacker Value
Unknown

CVE-2024-32660

Disclosure Date: April 23, 2024 (last updated April 24, 2024)
FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to version 3.5.1, a malicious server can crash the FreeRDP client by sending invalid huge allocation size. Version 3.5.1 contains a patch for the issue. No known workarounds are available.
0
Attacker Value
Unknown

CVE-2024-32659

Disclosure Date: April 23, 2024 (last updated April 24, 2024)
FreeRDP is a free implementation of the Remote Desktop Protocol. FreeRDP based clients prior to version 3.5.1 are vulnerable to out-of-bounds read if `((nWidth == 0) and (nHeight == 0))`. Version 3.5.1 contains a patch for the issue. No known workarounds are available.
0