mRemoteNG is a remote-connection management utility for system administrators, presenting a narrow but strategically important product footprint in environments where credentials and session state are frequently stored and accessed. Its vulnerability profile centers on cleartext storage of sensitive information and improper privilege management, reflecting the trust-boundary and secrets-handling demands inherent to a credential repository and multi-protocol connection tool. Current exploitation activity, severity breakdowns, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Mremoteng over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2020-24307HIGH An issue in mRemoteNG v1.76.20 allows attackers to escalate privileges via a crafted executable file. NOTE: third parties were unable to reproduce any scenario in which the claimed | Feb 2, 2023 | 7.8 | 25 | NO | NO |
CVE-2023-30367HIGH Multi-Remote Next Generation Connection Manager (mRemoteNG) is free software that enables users to store and manage multi-protocol connection configurations to remotely connect to | Jul 26, 2023 | 7.5 | 23 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Mremoteng.
Media articles that mention a CVE ID that affects a product developed by Mremoteng — matched by CVE ID, not by vendor name.