No access control for the OTP key   on OTP entries in Devolutions Remote Desktop Manager Windows 2022.3.33.0 and prior versions and Remote Desktop Manager Linux 2022.3.2.0 and prior versions allows non admin users to see OTP keys via the user interface.
History

Mon, 10 Feb 2025 19:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: DEVOLUTIONS

Published:

Updated: 2025-02-10T18:57:15.161Z

Reserved: 2023-04-07T13:39:45.374Z

Link: CVE-2023-1939

cve-icon Vulnrichment

Updated: 2024-08-02T06:05:27.088Z

cve-icon NVD

Status : Modified

Published: 2023-04-11T18:15:58.447

Modified: 2025-02-10T19:15:36.363

Link: CVE-2023-1939

cve-icon Redhat

No data.