📦 Remote Desktop Manager

by Devolutions

🔍 What is Remote Desktop Manager?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2024-6057

CRITICAL CVSS 9.8 Jun 17, 2024

This vulnerability allows attackers who have already compromised access to a Devolutions Remote Desktop Manager instance to bypass the vault master password protection using the offline mode feature. ...

CVE-2023-6593

CRITICAL CVSS 9.8 Dec 12, 2023

This vulnerability allows attackers with physical or application access to an iOS device running Devolutions Remote Desktop Manager to bypass client-side permissions and execute entries in SQL data so...

CVE-2023-5765

CRITICAL CVSS 9.8 Nov 1, 2023

This vulnerability allows attackers to bypass access controls in Devolutions Remote Desktop Manager by switching data sources in the password analyzer feature. Attackers can potentially access sensiti...

CVE-2023-4373

CRITICAL CVSS 9.8 Aug 21, 2023

This vulnerability in Devolutions Remote Desktop Manager allows users to bypass permission checks when using remote tools and macros, enabling unauthorized connections. It affects versions 2023.2.19 a...

CVE-2025-5334

HIGH CVSS 7.5 May 29, 2025

This vulnerability in Devolutions Remote Desktop Manager allows authenticated users to access private personal information when entries are unintentionally moved from user vaults to shared vaults duri...

CVE-2025-1193

HIGH CVSS 8.1 Feb 10, 2025

CVE-2025-1193 is a certificate validation vulnerability in Devolutions Remote Desktop Manager that allows man-in-the-middle attacks. Attackers can intercept and modify encrypted communications by pres...

CVE-2024-11621

HIGH CVSS 8.8 Feb 10, 2025

This vulnerability allows attackers to perform man-in-the-middle attacks by intercepting and modifying encrypted communications in Devolutions Remote Desktop Manager. Missing certificate validation en...

CVE-2024-12149

HIGH CVSS 8.1 Dec 4, 2024

This vulnerability allows authenticated users in Devolutions Remote Desktop Manager to request temporary permissions on entries and receive higher privileges than requested due to incorrect permission...

CVE-2024-6354

HIGH CVSS 7.2 Jun 26, 2024

This vulnerability allows authenticated users in Devolutions Remote Desktop Manager to bypass execute permissions through the PAM dashboard. Attackers with valid credentials can perform unauthorized a...

CVE-2023-6288

HIGH CVSS 7.8 Dec 6, 2023

This vulnerability allows attackers to inject malicious code into Remote Desktop Manager on macOS by manipulating the DYLIB_INSERT_LIBRARIES environment variable. Successful exploitation enables arbit...

CVE-2022-33995

HIGH CVSS 7.5 Jun 21, 2022

This path traversal vulnerability in Devolutions Remote Desktop Manager allows attackers to create or overwrite arbitrary files on the system by manipulating entry attachments. It affects all users ru...

CVE-2021-42098

HIGH CVSS 8.8 Oct 18, 2021

This vulnerability in Devolutions Remote Desktop Manager allows attackers to bypass permission checks via batch custom PowerShell scripts. Attackers could execute unauthorized actions that should be r...

CVE-2025-13683

MEDIUM CVSS 6.5 Nov 28, 2025

This vulnerability in Devolutions Server and Remote Desktop Manager exposes credentials through unintended requests, potentially allowing attackers to access sensitive authentication data. It affects ...

CVE-2025-2562

MEDIUM CVSS 5.4 Mar 26, 2025

This vulnerability in Devolutions Remote Desktop Manager allows authenticated users to use stored passwords via the autotyping feature without generating log events. This affects Windows installations...

CVE-2025-1635

MEDIUM CVSS 6.5 Mar 13, 2025

This vulnerability in Devolutions Remote Desktop Manager allows authenticated users to export hub data sources containing their authenticated session information due to faulty business logic. This exp...

CVE-2024-11671

MEDIUM CVSS 5.4 Nov 25, 2024

This vulnerability allows authenticated users in Devolutions Remote Desktop Manager to bypass multi-factor authentication (MFA) by switching data sources. It affects Windows installations of Remote De...

CVE-2024-6055

MEDIUM CVSS 4.7 Jun 17, 2024

This vulnerability in Devolutions Remote Desktop Manager allows attackers who obtain exported configuration files to recover PowerShell credentials stored in data sources. It affects Windows users run...