VYPR
High severity8.1NVD Advisory· Published Dec 4, 2024· Updated Jun 17, 2026

CVE-2024-12149

CVE-2024-12149

Description

Incorrect permission assignment in temporary access requests component in Devolutions Remote Desktop Manager 2024.3.19.0 and earlier on Windows allows an authenticated user that request temporary permissions on an entry to obtain more privileges than requested.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

4
  • cpe:2.3:a:devolutions:remote_desktop_manager:*:*:*:*:free:windows:*:*+ 3 more
    • cpe:2.3:a:devolutions:remote_desktop_manager:*:*:*:*:free:windows:*:*range: <2024.3.20.0
    • cpe:2.3:a:devolutions:remote_desktop_manager:*:*:*:*:team:windows:*:*range: <2024.3.20.0
    • (no CPE)range: <=2024.3.19.0
    • (no CPE)range: 0

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.