Threats Tagged 'cve-2026-78417'
View all threats tagged with 'cve-2026-78417'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'cve-2026-78417'
Click on any threat for detailed analysis and mitigation recommendations
A vulnerability exists in the IronVNC client within Devolutions Remote Desktop Manager versions 2026.2.17.0 and earlier, and 2026.1.24.0 and earlier. The issue is due to insufficient verification of data authenticity, allowing an on-path attacker to intercept and tamper with VNC sessions by exploiting automatic acceptance of the server's RSA key during RSA-AES authentication. This flaw could lead to integrity compromise of the session data without user privileges or system availability impact. Join the discussion | GCVE Database | 08/24/2026, 21:33:43 UTC Added: 08/29/2026, 15:17:40 UTC |
0 CVE-2026-78417 is a medium severity vulnerability in Devolutions Remote Desktop Manager affecting versions prior to 2026.2.18 and 2026.1.25. It involves insufficient verification of data authenticity in the IronVNC client, allowing an on-path attacker to intercept and tamper with VNC sessions by exploiting automatic acceptance of the server's RSA key during RSA-AES authentication. Join the discussion | CVE Database V5 | 08/24/2026, 18:26:25 UTC Added: 08/24/2026, 18:37:38 UTC |
Showing 1 to 2 of 2 results