What the vulnerability does

01Description

Improper Access Control vulnerability in the Duo SMS two-factor of Devolutions Remote Desktop Manager 2022.2.14 and earlier allows attackers to bypass the application lock. This issue affects: Devolutions Remote Desktop Manager version 2022.2.14 and prior versions.

Key dates

02Disclosure timeline

September 13, 2022 CVE published
August 3, 2024 Record updated