Royalapps develops remote-access and terminal-emulation tools centered on its Royal TS and RoyalsX products, which serve as connection managers for IT professionals across heterogeneous infrastructure. The durable vulnerability signal centers on input-handling and authentication-management defenses, including improper restriction of excessive authentication attempts and out-of-bounds write conditions. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Royalapps over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2020-13872HIGH Royal TS before 5 has a 0.0.0.0 listener, which makes it easier for attackers to bypass tunnel authentication via a brute-force approach. | Jun 9, 2020 | 8.8 | 29 | NO | NO |
CVE-2023-52277HIGH Royal RoyalTSX before 6.0.2.1 allows attackers to cause a denial of service (Heap Memory Corruption and application crash) or possibly have unspecified other impact via a long host | Dec 31, 2023 | 7.8 | 22 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Royalapps.
Media articles that mention a CVE ID that affects a product developed by Royalapps — matched by CVE ID, not by vendor name.