Vulnerability index

Browse CVEs

134 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

MEDIUM 5.4 CVE-2022-2316 HTML injection vulnerability in secure messages of Devolutions Server before 2022.2 allows attackers to alter the rendering of the page or redirect a… Devolutions Server 2022.2+ Fix from $1,6002022-07-06 MEDIUM 6.5 CVE-2022-2221 Information Exposure vulnerability in My Account Settings of Devolutions Remote Desktop Manager before 2022.1.8 allows authenticated users to access … Remote Desktop Manager 2022.1.8+ Fix from $1,6002022-06-27 HIGH 7.5 CVE-2022-33995 A path traversal issue in entry attachments in Devolutions Remote Desktop Manager before 2022.2 allows attackers to create or overwrite files in an a… Remote Desktop Manager 2022.2+ Fix from $1,9502022-06-21 MEDIUM 6.6 CVE-2022-23849 The biometric lock in Devolutions Password Hub for iOS before 2021.3.4 allows attackers to access the application because of authentication bypass. A… Password Hub 2021.3.4+ Fix from $1,6002022-03-03 HIGH 8.8 CVE-2021-42098 An incomplete permission check on entries in Devolutions Remote Desktop Manager before 2021.2.16 allows attackers to bypass permissions via batch cus… Remote Desktop Manager 2021.2.16+ Fix from $1,9502021-10-18 HIGH 7.2 CVE-2021-28157 An SQL Injection issue in Devolutions Server before 2021.1 and Devolutions Server LTS before 2020.3.18 allows an administrative user to execute arbit… Devolutions Server 2020.3.18 / 2021.1+ Fix from $1,9502021-04-14 MEDIUM 6.5 CVE-2021-28048 An overly permissive CORS policy in Devolutions Server before 2021.1 and Devolutions Server LTS before 2020.3.18 allows a remote attacker to leak cro… Devolutions Server 2020.3.18 / 2021.1+ Fix from $1,6002021-04-14 CRITICAL 9.1 CVE-2021-23921 An issue was discovered in Devolutions Server before 2020.3. There is broken access control on Password List entry elements. Devolutions Server 2020.3+ Fix from $2,3002021-04-01 HIGH 8.1 CVE-2021-23923 An issue was discovered in Devolutions Server before 2020.3. There is Broken Authentication with Windows domain users. Devolutions Server 2020.3+ Fix from $1,9502021-04-01 HIGH 7.5 CVE-2021-23924 An issue was discovered in Devolutions Server before 2020.3. There is an exposure of sensitive information in diagnostic files. Devolutions Server 2020.3+ Fix from $1,9502021-04-01 MEDIUM 6.1 CVE-2021-23925 An issue was discovered in Devolutions Server before 2020.3. There is a cross-site scripting (XSS) vulnerability in entries of type Document. Devolutions Server 2020.3+ Fix from $1,6002021-04-01 MEDIUM 5.4 CVE-2021-23922 An issue was discovered in Devolutions Remote Desktop Manager before 2020.2.12. There is a cross-site scripting (XSS) vulnerability in webviews. Remote Desktop Manager 2020.2.12.0+ Fix from $1,6002021-04-01 MEDIUM 5.4 CVE-2021-28047 Cross-Site Scripting (XSS) in Administrative Reports in Devolutions Remote Desktop Manager before 2021.1 allows remote authenticated users to inject … Remote Desktop Manager 2021.1.0+ Fix from $1,6002021-04-01 HIGH 7.0 CVE-2020-36211 An issue was discovered in the gfwx crate before 0.3.0 for Rust. Because ImageChunkMut does not have bounds on its Send trait or Sync trait, a data r… Gfwx 0.3.0+ Fix from $1,9502021-01-26