ZeroHour

CVE-2025-1193

CVSS 3.1
8.1 high
EPSS
<1%p31
Published
()
Modified
Description

Improper host validation in the certificate validation component in Devolutions Remote Desktop Manager on 2024.3.19 and earlier on Windows allows an attacker to intercept and modify encrypted communications via a man-in-the-middle attack by presenting a certificate for a different host.

Vendors
devolutions
Products
remote desktop manager
Weakness
CWE-295
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:N

In the news

No ingested article mentions this CVE yet.