PT-2025-16980 · Unknown · Work Desktop For Mac

CVE-2025-3651

·

Published

2025-04-17

·

Updated

2025-04-19

CVSS v4.0

9.3

Critical

VectorAV:N/AC:L/AT:N/PR:N/UI:P/VC:H/VI:H/VA:N/SC:H/SI:H/SA:N
Name of the Vulnerable Software and Affected Versions Work Desktop for Mac versions 10.8.1.46 and earlier
Description The issue is related to improper verification of the source of a communication channel, allowing attackers to execute arbitrary commands via unauthorized access to the Agent service. This has been remediated in version 10.8.2.33.
Recommendations For Work Desktop for Mac versions 10.8.1.46 and earlier, update to version 10.8.2.33 to resolve the issue. As a temporary workaround, consider restricting access to the Agent service to minimize the risk of exploitation.

Fix

Origin Validation Error

Exposure of Resource to Wrong Sphere

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2025-3651

Affected Products

Work Desktop For Mac