Vulnerability index

Browse CVEs

134 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 8.1 CVE-2025-2280 Improper access control in web extension restriction feature in Devolutions Server 2024.3.4.0 and earlier allows an authenticated user to bypass th… Devolutions Server 2024.3.6.0+ Fix from $1,9502025-03-13 HIGH 7.5 CVE-2025-2277 Exposure of password in web-based SSH authentication component in Devolutions Server 2024.3.13 and earlier allows a user to unadvertently leak his SS… Devolutions Server 2025.1.3.0+ Fix from $1,9502025-03-13 MEDIUM 6.5 CVE-2025-2278 Improper access control in temporary access requests and checkout requests endpoints in Devolutions Server 2024.3.13 and earlier allows an authentica… Devolutions Server 2025.1.3.0+ Fix from $1,6002025-03-13 MEDIUM 6.5 CVE-2025-1635 Exposure of sensitive information in hub data source export feature in Devolutions Remote Desktop Manager 2024.3.29 and earlier on Windows allows a u… Remote Desktop Manager 2024.3.31.0+ Fix from $1,6002025-03-13 MEDIUM 6.5 CVE-2025-1636 Exposure of sensitive information in My Personal Credentials password history component in Devolutions Remote Desktop Manager 2024.3.29 and earlier o… Remote Desktop Manager 2024.3.31.0+ Fix from $1,6002025-03-13 HIGH 7.1 CVE-2025-2003 Incorrect authorization in PAM vaults in Devolutions Server 2024.3.12 and earlier allows an authenticated user to bypass the 'add in root' permission. Devolutions Server 2024.3.13.0+ Fix from $1,9502025-03-05 MEDIUM 5.4 CVE-2025-1231 Improper password reset in PAM Module in Devolutions Server 2024.3.10.0 and earlier allows an authenticated user to reuse the oracle user password af… Devolutions Server 2024.3.11.0+ Fix from $1,6002025-02-11 HIGH 8.1 CVE-2025-1193 Improper host validation in the certificate validation component in Devolutions Remote Desktop Manager on 2024.3.19 and earlier on Windows allows an … Remote Desktop Manager 2024.3.20.0+ Fix from $1,9502025-02-10 HIGH 8.8 CVE-2024-11621 Missing certificate validation in Devolutions Remote Desktop Manager on macOS, iOS, Android, Linux allows an attacker to intercept and modify encrypt… Remote Desktop Manager 2024.3.2.9 / 2024.3.4.0+ Fix from $1,9502025-02-10 MEDIUM 6.5 CVE-2024-12196 Incorrect authorization in the permission component in Devolutions Server 2024.3.7.0 and earlier allows an authenticated user to view the password hi… Devolutions Server 2024.3.8.0+ Fix from $1,6002024-12-04 HIGH 8.1 CVE-2024-12149 Incorrect permission assignment in temporary access requests component in Devolutions Remote Desktop Manager 2024.3.19.0 and earlier on Windows allow… Remote Desktop Manager 2024.3.20.0+ Fix from $1,9502024-12-04 MEDIUM 5.0 CVE-2024-12151 Incorrect permission assignment in the user migration feature in Devolutions Server 2024.3.8.0 and earlier allows users to retain their old permissio… Devolutions Server 2024.3.9.0+ Fix from $1,6002024-12-04 MEDIUM 5.4 CVE-2024-11671 Improper authentication in SQL data source MFA validation in Devolutions Remote Desktop Manager 2024.3.17 and earlier on Windows allows an authentica… Remote Desktop Manager 2024.3.18.0+ Fix from $1,6002024-11-25 MEDIUM 5.4 CVE-2024-11670 Incorrect authorization in the permission validation component of Devolutions Remote Desktop Manager 2024.2.21 and earlier on Windows allows a malici… Remote Desktop Manager after 2024.3.10.0 Fix from $1,6002024-11-25 MEDIUM 5.5 CVE-2024-7421 An information exposure in Devolutions Remote Desktop Manager 2024.2.20.0 and earlier on Windows allows local attackers with access to system logs to… Remote Desktop Manager 2024.3.10+ Fix from $1,6002024-09-25 MEDIUM 6.5 CVE-2024-6512 Authorization bypass in the PAM access request approval mechanism in Devolutions Server 2024.2.10 and earlier allows authenticated users with permiss… Devolutions Server 2024.3.0+ Fix from $1,6002024-09-25 HIGH 7.4 CVE-2024-6492 Exposure of Sensitive Information in edge browser session proxy feature in Devolutions Remote Desktop Manager 2024.2.14.0 and earlier on Windows allo… Remote Desktop Manager 2024.2.15.0+ Fix from $1,9502024-07-16 HIGH 7.2 CVE-2024-6354 Improper access control in PAM dashboard in Devolutions Remote Desktop Manager 2024.2.11 and earlier on Windows allows an authenticated user to bypas… Remote Desktop Manager 2024.2.12.0+ Fix from $1,9502024-06-26 MEDIUM 6.3 CVE-2024-4846 Authentication bypass in the 2FA feature in Devolutions Server 2024.1.14.0 and earlier allows an authenticated attacker to authenticate to another us… Devolutions Server 2024.1.15.0+ Fix from $1,6002024-06-25 CRITICAL 9.8 CVE-2024-6057 Improper authentication in the vault password feature in Devolutions Remote Desktop Manager 2024.1.31.0 and earlier allows an attacker that has compr… Remote Desktop Manager 2024.1.32.0+ Fix from $2,3002024-06-17 MEDIUM 6.5 CVE-2024-5072 Improper input validation in PAM JIT elevation feature in Devolutions Server 2024.1.11.0 and earlier allows an authenticated user with access to the … Devolutions Server 2024.1.12.0+ Fix from $1,6002024-05-17 CRITICAL 9.8 CVE-2024-2921 Improper access control in PAM vault permissions in Devolutions Server 2024.1.10.0 and earlier allows an authenticated user with access to the PAM to… Devolutions Server 2024.1.8.0+ Fix from $2,3002024-03-26 HIGH 8.8 CVE-2024-2915 Improper access control in PAM JIT elevation in Devolutions Server 2024.1.6 and earlier allows an attacker with access to the PAM JIT elevation featu… Devolutions Server 2024.1.8.0+ Fix from $1,9502024-03-26 MEDIUM 5.9 CVE-2024-2403 Improper cleanup in temporary file handling component in Devolutions Remote Desktop Manager 2024.1.12 and earlier on Windows allows an attacker that … Remote Desktop Manager 2024.1.15.0+ Fix from $1,6002024-03-13 MEDIUM 6.3 CVE-2024-2241 Improper access control in the user interface in Devolutions Workspace 2024.1.0 and earlier allows an authenticated user to perform unintended action… Workspace 2024.1.1.0+ Fix from $1,6002024-03-07 MEDIUM 5.5 CVE-2024-1900 Improper session management in the identity provider authentication flow in Devolutions Server 2023.3.14.0 and earlier allows an authenticated user v… Devolutions Server after 2023.3.16.0 Fix from $1,6002024-03-05 HIGH 7.6 CVE-2024-1764 Improper privilege management in Just-in-time (JIT) elevation module in Devolutions Server 2023.3.14.0 and earlier allows a user to continue using th… Devolutions Server 2023.3.16.0+ Fix from $1,9502024-03-05 MEDIUM 5.4 CVE-2024-0589 Cross-site scripting (XSS) vulnerability in the entry overview tab in Devolutions Remote Desktop Manager 2023.3.36 and earlier on Windows allows an a… Remote Desktop Manager after 2023.3.36.0 Fix from $1,6002024-01-31 CRITICAL 9.8 CVE-2023-6593 Client side permission bypass in Devolutions Remote Desktop Manager 2023.3.4.0 and earlier on iOS allows an attacker that has access to the applicati… Remote Desktop Manager 2023.3.5.0+ Fix from $2,3002023-12-12 MEDIUM 6.5 CVE-2023-6588 Offline mode is always enabled, even if permission disallows it, in Devolutions Server data source in Devolutions Workspace 2023.3.2.0 and earlier.… Workspace after 2023.3.2.0 Fix from $1,6002023-12-07