CVE-2024-0589

Severity CVSS v4.0:
Pending analysis
Type:
CWE-79 Cross-Site Scripting (XSS)
Publication date:
31/01/2024
Last modified:
09/06/2025

Description

Cross-site scripting (XSS) vulnerability in the entry overview tab in Devolutions Remote Desktop Manager 2023.3.36 and earlier on Windows allows an attacker with access to a data source to inject a malicious script via a specially crafted input in an entry.<br /> <br /> <br /> <br /> <br /> <br />

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:devolutions:remote_desktop_manager:*:*:*:*:*:*:*:* 2023.3.36.0 (including)
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*