Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-2c8c-xhwv-r7h7

Опубликовано: 02 нояб. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 6.5

Описание

Dashlane password and Keepass Server password in My Account Settings are not encrypted in the database in Devolutions Remote Desktop Manager 2022.2.26 and prior versions and Devolutions Server 2022.3.1 and prior versions which allows database users to read the data. This issue affects : Remote Desktop Manager 2022.2.26 and prior versions. Devolutions Server 2022.3.1 and prior versions.

Dashlane password and Keepass Server password in My Account Settings are not encrypted in the database in Devolutions Remote Desktop Manager 2022.2.26 and prior versions and Devolutions Server 2022.3.1 and prior versions which allows database users to read the data. This issue affects : Remote Desktop Manager 2022.2.26 and prior versions. Devolutions Server 2022.3.1 and prior versions.

EPSS

Процентиль: 28%
0.001
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-311
CWE-522

Связанные уязвимости

CVSS3: 6.5
nvd
больше 3 лет назад

Dashlane password and Keepass Server password in My Account Settings  are not encrypted in the database in Devolutions Remote Desktop Manager 2022.2.26 and prior versions and Devolutions Server 2022.3.1 and prior versions which allows database users to read the data. This issue affects : Remote Desktop Manager 2022.2.26 and prior versions. Devolutions Server 2022.3.1 and prior versions.

EPSS

Процентиль: 28%
0.001
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-311
CWE-522