CVE-2024-11621

CVSS 3.1 Score 8.8 of 10 (high)

Details

Published Feb 10, 2025
CWE ID 295

Summary

CVE-2024-11621 is a cybersecurity vulnerability affecting Devolutions Remote Desktop Manager on macOS, iOS, Android, and Linux. The issue involves missing certificate validation, which enables an attacker to perform man-in-the-middle attacks and intercept or modify encrypted communications. This vulnerability is present in Remote Desktop Manager versions 2024.3.9.0 and earlier for macOS, 2024.3.2.5 and earlier for Linux, 2024.3.3.7 and earlier for Android, and 2024.3.3.0 and earlier for iOS. Additionally, Remote Desktop Manager Powershell versions 2024.3.6.0 and earlier are also affected.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Devolutions Remote Desktop Manager

Affected Vendors

  • Devolutions