CVE-2023-4373: Devolutions Remote Desktop Manager

Critical severity, CVSS 9.8. EPSS: 0.7% chance of exploitation in the next 30 days.

Inadequate validation of permissions when employing remote tools and macros within Devolutions Remote Desktop Manager versions 2023.2.19 and earlier permits a user to initiate a connection without proper execution rights via the remote tools feature.

Affected products

  • Devolutions Remote Desktop Manager: up to and including 2023.2.19

Published 2023-08-21. Last modified 2026-06-17.