ZeroHour

CVE-2024-3545

CVSS 3.1
4.3 medium
EPSS
<1%p20
Published
()
Modified
Description

Improper permission handling in the vault offline cache feature in Devolutions Remote Desktop Manager 2024.1.20 and earlier on windows and Devolutions Server 2024.1.8 and earlier allows an attacker to access sensitive informations contained in the offline cache file by gaining access to a computer where the software is installed even though the offline mode is disabled.

Vendors
devolutions
Products
devolutions server, remote desktop manager
Weakness
CWE-281
Vector
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L

In the news

No ingested article mentions this CVE yet.