← Volver al buscador de CVEs

CVE-2026-12162

Devolutions Remote Desktop Manager

Descripción

Improper host validation in the social login autofill feature in Devolutions Remote Desktop Manager 2026.2.8 allows an attacker to disclose stored social login credentials via a crafted web entry pointing to a provider lookalike domain.

CVSS 5.5EPSS 0.147%Riesgo 0.56
Ver fuente
Publicación
2026-06-16 01:16:23
Versiones afectadas
<=2026.2.8
Tipo
Software crítico
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:L
Sistemas operativos
Windows