Description
Use of a Broken or Risky Cryptographic Algorithm vulnerability in rustdesk-client RustDesk Client rustdesk-client on Windows, MacOS, Linux, iOS, Android, WebClient (Config import, URI scheme handler, CLI --config modules) allows Retrieve Embedded Sensitive Data. This vulnerability is associated with program files flutter/lib/common.Dart, hbb_common/src/config.Rs and program routines parseRustdeskUri(), importConfig(). This issue affects RustDesk Client: through 1.4.5.
Problem types
CWE-327 Use of a Broken or Risky Cryptographic Algorithm
Product status
Any version
Credits
Erez Kalman
Erez Kalman
References
rustdesk.com/docs/en/client/
docs.google.com/...QgAU-QGJ7D8a4rOZVj1vmiUXV1EcdRHf9aZAW/pub
www.vulsec.org/