Show filters
255 Total Results
Displaying 81-90 of 255
Sort by:
Attacker Value
Unknown

CVE-2023-29362

Disclosure Date: June 14, 2023 (last updated May 29, 2024)
Remote Desktop Client Remote Code Execution Vulnerability
Attacker Value
Unknown

CVE-2023-29352

Disclosure Date: June 14, 2023 (last updated May 29, 2024)
Windows Remote Desktop Security Feature Bypass Vulnerability
Attacker Value
Unknown

CVE-2023-2871

Disclosure Date: May 24, 2023 (last updated October 08, 2023)
A vulnerability was found in FabulaTech USB for Remote Desktop 6.1.0.0. It has been rated as problematic. Affected by this issue is the function 0x220448/0x220420/0x22040c/0x220408 of the component IoControlCode Handler. The manipulation leads to null pointer dereference. The attack needs to be approached locally. The exploit has been disclosed to the public and may be used. VDB-229850 is the identifier assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.
Attacker Value
Unknown

CVE-2023-28290

Disclosure Date: May 09, 2023 (last updated October 08, 2023)
Microsoft Remote Desktop app for Windows Information Disclosure Vulnerability
Attacker Value
Unknown

CVE-2023-24905

Disclosure Date: May 09, 2023 (last updated October 08, 2023)
Remote Desktop Client Remote Code Execution Vulnerability
Attacker Value
Unknown

CVE-2023-2282

Disclosure Date: April 25, 2023 (last updated October 08, 2023)
Improper access control in the Web Login listener in Devolutions Remote Desktop Manager 2023.1.22 and earlier on Windows allows an authenticated user to bypass administrator-enforced Web Login restrictions and gain access to entries via an unexpected vector.
Attacker Value
Unknown

CVE-2023-28267

Disclosure Date: April 11, 2023 (last updated May 29, 2024)
Remote Desktop Protocol Client Information Disclosure Vulnerability
Attacker Value
Unknown

CVE-2023-1980

Disclosure Date: April 11, 2023 (last updated October 08, 2023)
Two factor authentication bypass on login in Devolutions Remote Desktop Manager 2022.3.35 and earlier allow user to cancel the two factor authentication via the application user interface and open entries.
Attacker Value
Unknown

CVE-2023-1939

Disclosure Date: April 11, 2023 (last updated October 08, 2023)
No access control for the OTP key   on OTP entries in Devolutions Remote Desktop Manager Windows 2022.3.33.0 and prior versions and Remote Desktop Manager Linux 2022.3.2.0 and prior versions allows non admin users to see OTP keys via the user interface.
Attacker Value
Unknown

CVE-2023-1574

Disclosure Date: April 02, 2023 (last updated November 08, 2023)
Information disclosure in the user creation feature of a MSSQL data source in Devolutions Remote Desktop Manager 2023.1.9 and below on Windows allows an attacker with access to the user interface to obtain sensitive information via the error message dialog that displays the password in clear text.