Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2023-4417

Опубликовано: 21 авг. 2023
Источник: nvd
CVSS3: 6.5
EPSS Низкий

Описание

Improper access controls in the entry duplication component in Devolutions Remote Desktop Manager 2023.2.19 and earlier versions on Windows allows an authenticated user, under specific circumstances, to inadvertently share their personal vault entry with shared vaults via an incorrect vault in the duplication write process.

Уязвимые конфигурации

Конфигурация 1

Одновременно

cpe:2.3:a:devolutions:remote_desktop_manager:*:*:*:*:*:*:*:*
Версия до 2023.2.19 (включая)
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

EPSS

Процентиль: 44%
0.00216
Низкий

6.5 Medium

CVSS3

Дефекты

NVD-CWE-Other

Связанные уязвимости

CVSS3: 10
github
больше 2 лет назад

Improper access controls in the entry duplication component in Devolutions Remote Desktop Manager 2023.2.19 and earlier versions on Windows allows an authenticated user, under specific circumstances, to inadvertently share their personal vault entry with shared vaults via an incorrect vault in the duplication write process.

EPSS

Процентиль: 44%
0.00216
Низкий

6.5 Medium

CVSS3

Дефекты

NVD-CWE-Other