RSS   Vulnerabilities for 'Workspace'   RSS

2023-12-07
 
CVE-2023-6588

CWE-noinfo
 

 
Offline mode is always enabled, even if permission disallows it, in Devolutions Server data source in Devolutions Workspace 2023.3.2.0 and earlier. This allows an attacker with access to the Workspace application to access credentials when offline.

 

 >>> Vendor: Devolutions 5 Products
Workspace
GFWX
Devolutions server
Remote desktop manager
Password hub


Copyright 2024, cxsecurity.com

 

Back to Top