Exposure of Sensitive Information in edge browser session proxy feature in Devolutions Remote Desktop Manager 2024.2.14.0 and earlier on Windows allows an attacker to intercept proxy credentials via a specially crafted website.
References
Configurations
No configuration.
History
21 Nov 2024, 09:49
Type | Values Removed | Values Added |
---|---|---|
References | () https://devolutions.net/security/advisories/DEVO-2024-0012 - |
05 Nov 2024, 22:35
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-522 | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.4 |
17 Jul 2024, 13:34
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
16 Jul 2024, 19:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-07-16 19:15
Updated : 2024-11-21 09:49
NVD link : CVE-2024-6492
Mitre link : CVE-2024-6492
CVE.ORG link : CVE-2024-6492
JSON object : View
Products Affected
No product.
CWE
CWE-522
Insufficiently Protected Credentials