Incorrect permission assignment in temporary access requests component poses elevated privileges risk
CVE-2024-12149

Currently unrated

Key Information:

Vendor
CVE Published:
4 December 2024

What is CVE-2024-12149?

Incorrect permission assignment in temporary access requests component in Devolutions Remote Desktop Manager 2024.3.19.0 and earlier on Windows allows an authenticated user that request temporary permissions on an entry to obtain more privileges than requested.

Affected Version(s)

Remote Desktop Manager Windows 0 <= 2024.3.19.0

References

Timeline

  • Vulnerability published

.