Loading vulnerability details…
CVSS v3.1
6.5
EPSS
0.52%
Published
Apr 11, 2023
Modified
Feb 10, 2025
Public PoC / Exploit (1)
All weaponized →Links to public security research (Exploit-DB, Nuclei, Trickest, GitHub) for defensive use only.
Description
Two factor authentication bypass on login in Devolutions Remote Desktop Manager 2022.3.35 and earlier allow user to cancel the two factor authentication via the application user interface and open entries.
CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:NWeaknesses (CWE)
Affected Products (1)
References (2)