Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-2p78-jppx-g4gp

Опубликовано: 26 мар. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 5.4

Описание

Insufficient logging in the autotyping feature in Devolutions Remote Desktop Manager on Windows allows an authenticated user to use a stored password without generating a corresponding log event, via the use of the autotyping functionality.

This issue affects Remote Desktop Manager versions from 2025.1.24 through 2025.1.25, and all versions up to 2024.3.29.

Insufficient logging in the autotyping feature in Devolutions Remote Desktop Manager on Windows allows an authenticated user to use a stored password without generating a corresponding log event, via the use of the autotyping functionality.

This issue affects Remote Desktop Manager versions from 2025.1.24 through 2025.1.25, and all versions up to 2024.3.29.

EPSS

Процентиль: 44%
0.0022
Низкий

5.4 Medium

CVSS3

Дефекты

CWE-778

Связанные уязвимости

CVSS3: 5.4
nvd
11 месяцев назад

Insufficient logging in the autotyping feature in Devolutions Remote Desktop Manager on Windows allows an authenticated user to use a stored password without generating a corresponding log event, via the use of the autotyping functionality. This issue affects Remote Desktop Manager versions from 2025.1.24 through 2025.1.25, and all versions up to 2024.3.29.

EPSS

Процентиль: 44%
0.0022
Низкий

5.4 Medium

CVSS3

Дефекты

CWE-778