Improper access control in the Web Login listener in Devolutions Remote Desktop Manager 2023.1.22 and earlier on Windows allows an authenticated user to bypass administrator-enforced Web Login restrictions and gain access to entries via an unexpected vector.
References
Link | Resource |
---|---|
https://devolutions.net/security/advisories/DEVO-2023-0012 | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: DEVOLUTIONS
Published: 2023-04-25T18:23:00.287Z
Updated: 2023-04-25T18:23:00.287Z
Reserved: 2023-04-25T15:07:46.309Z
Link: CVE-2023-2282
JSON object: View
NVD Information
Status : Analyzed
Published: 2023-04-25T19:15:11.100
Modified: 2023-05-04T15:16:53.583
Link: CVE-2023-2282
JSON object: View
Redhat Information
No data.
CWE