Inadequate validation of permissions when employing remote tools and
macros via the context menu within Devolutions Remote Desktop Manager versions 2023.3.31 and
earlier permits a user to initiate a connection without proper execution
rights via the remote tools feature. This affects only SQL data sources.
Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
| Link | Providers |
|---|---|
| https://devolutions.net/security/advisories/DEVO-2023-0024/ |
|
Tue, 29 Oct 2024 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-863 | |
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: DEVOLUTIONS
Published:
Updated: 2024-10-29T16:29:32.671Z
Reserved: 2023-12-21T14:35:55.673Z
Link: CVE-2023-7047
Updated: 2024-08-02T08:50:07.822Z
Status : Modified
Published: 2023-12-21T15:15:14.427
Modified: 2024-11-21T08:45:07.427
Link: CVE-2023-7047
No data.
OpenCVE Enrichment
No data.