Improper access controls in the entry duplication component in Devolutions Remote Desktop Manager 2023.2.19 and earlier versions on Windows allows an authenticated user, under specific circumstances, to inadvertently share their personal vault entry with shared vaults via an incorrect vault in the duplication write process.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://devolutions.net/security/advisories/DEVO-2023-0015 |
History
Mon, 07 Oct 2024 19:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
MITRE
Status: PUBLISHED
Assigner: DEVOLUTIONS
Published: 2023-08-21T18:38:06.606Z
Updated: 2024-10-04T16:50:38.460Z
Reserved: 2023-08-18T13:05:41.063Z
Link: CVE-2023-4417
Vulnrichment
Updated: 2024-08-02T07:24:05.034Z
NVD
Status : Modified
Published: 2023-08-21T19:15:09.187
Modified: 2024-11-21T08:35:06.210
Link: CVE-2023-4417
Redhat
No data.