← Zurück zur CVE-Suche

CVE-2026-12162

Devolutions Remote Desktop Manager

Beschreibung

Improper host validation in the social login autofill feature in Devolutions Remote Desktop Manager 2026.2.8 allows an attacker to disclose stored social login credentials via a crafted web entry pointing to a provider lookalike domain.

CVSS 5.5EPSS 0.147%Risiko 0.56
Quelle öffnen
Veröffentlicht
2026-06-16 01:16:23
Betroffene Versionen
<=2026.2.8
Typ
Kritische Software
Vektor
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:L
Betriebssysteme
Windows