PT-2025-16980 · Unknown · Work Desktop For Mac

Published

2025-04-17

·

Updated

2025-04-19

·

CVE-2025-3651

CVSS v4.0

9.3

Critical

VectorAV:N/AC:L/AT:N/PR:N/UI:P/VC:H/VI:H/VA:N/SC:H/SI:H/SA:N
Name of the Vulnerable Software and Affected Versions Work Desktop for Mac versions 10.8.1.46 and earlier
Description The issue is related to improper verification of the source of a communication channel, allowing attackers to execute arbitrary commands via unauthorized access to the Agent service. This has been remediated in version 10.8.2.33.
Recommendations For Work Desktop for Mac versions 10.8.1.46 and earlier, update to version 10.8.2.33 to resolve the issue. As a temporary workaround, consider restricting access to the Agent service to minimize the risk of exploitation.

Fix

Origin Validation Error

Exposure of Resource to Wrong Sphere

Weakness Enumeration

Related Identifiers

CVE-2025-3651

Affected Products

Work Desktop For Mac