Описание
Improper certificate validation in the Devolutions Server connection handling in Devolutions Password Manager 2026.2.1.0 and earlier on Android, iOS, and macOS allows an adjacent-network attacker to intercept and modify sensitive information via a forged TLS certificate.
EPSS
Процентиль: 0%
0.00082
Низкий
7.4 High
CVSS3
Дефекты
CWE-295
Связанные уязвимости
CVSS3: 7.4
github
4 дня назад
Improper certificate validation in the Devolutions Server connection handling in Devolutions Password Manager 2026.2.1.0 and earlier on Android, iOS, and macOS allows an adjacent-network attacker to intercept and modify sensitive information via a forged TLS certificate.
EPSS
Процентиль: 0%
0.00082
Низкий
7.4 High
CVSS3
Дефекты
CWE-295