Devolutions Remote Desktop Manager
cpe:2.3:a:devolutions:remote_desktop_manager:*:*:*:*:*:*:*
- <= 2024.3.19.0
- <= 2024.3.9.0
- <= 2024.3.2.5
- <= 2024.3.3.7
- <= 2024.3.3.0
- <= 2024.3.6.0
A vulnerability exists in Devolutions Remote Desktop Manager for Windows, specifically in versions through 2024.3.19, due to improper host validation in the certificate validation component. This flaw allows attackers to intercept and modify encrypted communications by presenting a certificate for a different host, effectively executing a man-in-the-middle attack.
Exploitation of this vulnerability allows for interception and modification of encrypted communications, creating a man-in-the-middle attack scenario.
Users can upgrade to Devolutions Remote Desktop Manager for Windows version 2024.3.20.0 or higher to address this vulnerability.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.