CVE-2022-3780

Severity CVSS v4.0:
Pending analysis
Type:
CWE-284 Improper Access Control
Publication date:
01/11/2022
Last modified:
05/05/2025

Description

Database connections on deleted users could stay active on MySQL data sources in Remote Desktop Manager 2022.3.7 and below which allow deleted users to access unauthorized data. <br /> <br /> This issue affects : <br /> Remote Desktop Manager 2022.3.7 and prior versions.<br /> <br />

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:devolutions:remote_desktop_manager:*:*:*:*:*:*:*:* 2022.3.8 (excluding)