Sensitive Information Exposure in Devolutions Remote Desktop Manager by Devolutions
CVE-2025-1635
What is CVE-2025-1635?
The Devolutions Remote Desktop Manager contains a vulnerability that allows for the unintended exposure of sensitive information during the hub data source export process. Specifically, the flaw stems from a misalignment in business logic where an authenticated user's session information could be improperly included in the exported data. This could potentially lead to unauthorized access to sensitive information, highlighting the need for users to ensure they are using the latest version to mitigate risks.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Remote Desktop Manager Windows 0 <= 2024.3.29.0
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved
