Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-v3wx-9j8m-4934

Опубликовано: 10 фев. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 8.1

Описание

Improper host validation in the certificate validation component in Devolutions Remote Desktop Manager on 2024.3.19 and earlier on Windows allows an attacker to intercept and modify encrypted communications via a man-in-the-middle attack by presenting a certificate for a different host.

Improper host validation in the certificate validation component in Devolutions Remote Desktop Manager on 2024.3.19 and earlier on Windows allows an attacker to intercept and modify encrypted communications via a man-in-the-middle attack by presenting a certificate for a different host.

EPSS

Процентиль: 17%
0.00053
Низкий

8.1 High

CVSS3

Дефекты

CWE-295

Связанные уязвимости

CVSS3: 8.1
nvd
12 месяцев назад

Improper host validation in the certificate validation component in Devolutions Remote Desktop Manager on 2024.3.19 and earlier on Windows allows an attacker to intercept and modify encrypted communications via a man-in-the-middle attack by presenting a certificate for a different host.

EPSS

Процентиль: 17%
0.00053
Низкий

8.1 High

CVSS3

Дефекты

CWE-295