Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xfg6-fr73-q2fq

Опубликовано: 25 нояб. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 5.4

Описание

Improper authentication in SQL data source MFA validation in Devolutions Remote Desktop Manager 2024.3.17 and earlier on Windows allows an authenticated user to bypass the MFA validation via data source switching.

Improper authentication in SQL data source MFA validation in Devolutions Remote Desktop Manager 2024.3.17 and earlier on Windows allows an authenticated user to bypass the MFA validation via data source switching.

EPSS

Процентиль: 24%
0.00082
Низкий

5.4 Medium

CVSS3

Дефекты

CWE-287

Связанные уязвимости

CVSS3: 5.4
nvd
около 1 года назад

Improper authentication in SQL data source MFA validation in Devolutions Remote Desktop Manager 2024.3.17 and earlier on Windows allows an authenticated user to bypass the MFA validation via data source switching.

EPSS

Процентиль: 24%
0.00082
Низкий

5.4 Medium

CVSS3

Дефекты

CWE-287