Entreprise d'experts en Sécurité Informatique : Audits et conseils en cybersécurité
Entreprise française de cybersécurité depuis 2004
☎ 03 60 47 09 81 - info@securiteinfo.com


CVE-2024-11621

Description

Missing certificate validation in Devolutions Remote Desktop Manager on macOS, iOS, Android, Linux allows an attacker to intercept and modify encrypted communications via a man-in-the-middle attack.Versions affected are :Remote Desktop Manager macOS 2024.3.9.0 and earlierRemote Desktop Manager Linux 2024.3.2.5 and earlierRemote Desktop Manager Android 2024.3.3.7 and earlierRemote Desktop Manager iOS 2024.3.3.0 and earlierRemote Desktop Manager Powershell 2024.3.6.0 and earlier

POC

Reference

- https://devolutions.net/security/advisories/DEVO-2025-0001/

Github

No PoCs found on GitHub currently.