Remote desktop manager
This hub aggregates every CVE we track for Remote desktop manager, a product in the consumer software space. Use it to gauge the current risk picture and drill into individual advisories.
54
CVEs tracked
6
Critical
16
High
0
In CISA KEV
Severity distribution
MEDIUM29HIGH16CRITICAL6LOW3
Monthly trend
0
3
1
0
2
6
0
1
0
0
0
0
0
1
0
1
0
1
0
0
3
0
1
0
2024-102026-09
Latest CVEs
The 15 most recently published vulnerabilities affecting Remote desktop manager.
- CVE-2026-78417Insufficient verification of data authenticity in the IronVNC client in Devolutions Remote Desktop Manager 2026.2.17.0 and earlier, 2026.1.24.0 and earlier, allows an on-path attacker to intercept ...4.3
- CVE-2026-13372Incorrect link resolution by display name in the custom PowerShell VPN editor in Devolutions Remote Desktop Manager 2026.2.5 through 2026.2.11 allows an authenticated attacker with write access to ...7.2
- CVE-2026-12162Improper host validation in the social login autofill feature in Devolutions Remote Desktop Manager 2026.2.8 allows an attacker to disclose stored social login credentials via a crafted web entry...5.5
- CVE-2026-12161Improper input validation in the SSH Elevate Shell feature allows an authenticated user with permission to create or modify a shared SSH entry to execute arbitrary commands on a remote SSH host u...8.8
- CVE-2026-2590Improper enforcement of the Disable password saving in vaults setting in the connection entry component in Devolutions Remote Desktop Manager 2025.3.30 and earlier allows an authenticated user to...9.8
- CVE-2026-0747Exposure of sensitive information in the TeamViewer entry dashboard component in Devolutions Remote Desktop Manager 2025.3.24.0 through 2025.3.28.0 on Windows allows an external observer to view a ...3.3
- CVE-2025-13683Exposure of credentials in unintended requests in Devolutions Server, Remote Desktop Manager on Windows.This issue affects Devolutions Server: through 2025.3.8.0; Remote Desktop Manager: through 20...6.5
- CVE-2025-5334Exposure of private personal information to an unauthorized actor in the user vaults component of Devolutions Remote Desktop Manager allows an authenticated user to gain unauthorized access to priv...7.5
- CVE-2025-2600Improper authorization in the variable component in Devolutions Remote Desktop Manager on Windows allows an authenticated user to use the ELEVATED_PASSWORD variable even though not allowed by the "...6.8
- CVE-2025-2562Insufficient logging in the autotyping feature in Devolutions Remote Desktop Manager on Windows allows an authenticated user to use a stored password without generating a corresponding log event, v...5.4
- CVE-2025-2528Improper authorization in application password policy in Devolutions Remote Desktop Manager on Windows allows an authenticated user to use a configuration different from the one mandated by the sy...3.6
- CVE-2025-2499Client side access control bypass in the permission component in Devolutions Remote Desktop Manager on Windows. An authenticated user can exploit this flaw to bypass certain permission restriction...5.4
- CVE-2025-1636Exposure of sensitive information in My Personal Credentials password history component in Devolutions Remote Desktop Manager 2024.3.29 and earlier on Windows allows an authenticated user to inadve...6.5
- CVE-2025-1635Exposure of sensitive information in hub data source export feature in Devolutions Remote Desktop Manager 2024.3.29 and earlier on Windows allows a user exporting a hub data source to include his a...6.5
- CVE-2024-11621Missing certificate validation in Devolutions Remote Desktop Manager on macOS, iOS, Android, Linux allows an attacker to intercept and modify encrypted communications via a man-in-the-middle attack...8.8
Product normalization is registry-driven with AI assist and human review. How it works