CVE-2023-4417
Devolutions Remote Desktop Manager ≤ 2023.2.19
CVSS Score v3.1
6.5
Click a component to see what it means
Raw vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
EPSS Score
0.0045
37th percentile
Summary
CVE-2023-4417 is a medium-severity an unspecified weakness vulnerability in Devolutions Remote Desktop Manager. Its CVSS base score is 6.5 (Medium).
Operationally, ranked at the 37th percentile by exploit likelihood (below the median); it is not currently listed in the CISA KEV catalog.
EU & UK References
- 🇪🇺 ENISA EUVD: EUVD-2023-54280
Vulnerability Data
Improper access controls in the entry duplication component in Devolutions Remote Desktop Manager 2023.2.19 and earlier versions on Windows allows an authenticated user, under specific circumstances, to inadvertently share their personal vault entry with shared vaults via an incorrect vault…
more
in the duplication write process.
- CWE(s)
Related Threats
CVEs Like This One
CVE-2023-5765Same product: Devolutions Remote Desktop Manager
CVE-2023-7047Same product: Devolutions Remote Desktop Manager
CVE-2023-2282Same product: Devolutions Remote Desktop Manager
CVE-2024-0589Same product: Devolutions Remote Desktop Manager
CVE-2023-5766Same product: Devolutions Remote Desktop Manager
CVE-2023-2257Same product: Microsoft Windows
CVE-2023-36868Same product: Microsoft Windows
CVE-2024-20670Same product: Microsoft Windows
CVE-2024-6913Same product: Microsoft Windows
CVE-2023-23459Same product: Microsoft Windows
Affected Assets
devolutions
remote desktop manager
≤ 2023.2.19
Mitigating Controls
No mitigating controls mapped yet. The per-CVE control annotator has not reached this CVE.