Логотип exploitDog
bind:CVE-2025-27919
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-27919

Количество 3

Количество 3

nvd логотип

CVE-2025-27919

3 месяца назад

An issue was discovered in AnyDesk through 9.0.4. A remotely connected user with the "Control my device" permission can manipulate remote AnyDesk settings and create a password for the Full Access profile without needing confirmation from the counterparty. Consequently, the attacker can later connect without this counterparty confirmation.

CVSS3: 8.2
EPSS: Низкий
github логотип

GHSA-g2cq-q859-8fm9

3 месяца назад

An issue was discovered in AnyDesk through 9.0.4. A remotely connected user with the "Control my device" permission can manipulate remote AnyDesk settings and create a password for the Full Access profile without needing confirmation from the counterparty. Consequently, the attacker can later connect without this counterparty confirmation.

CVSS3: 8.2
EPSS: Низкий
fstec логотип

BDU:2025-13994

3 месяца назад

Уязвимость программного обеспечения для удалённого доступа и управления AnyDesk, связанная с ошибками обработки разрешений, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

CVSS3: 8.2
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-27919

An issue was discovered in AnyDesk through 9.0.4. A remotely connected user with the "Control my device" permission can manipulate remote AnyDesk settings and create a password for the Full Access profile without needing confirmation from the counterparty. Consequently, the attacker can later connect without this counterparty confirmation.

CVSS3: 8.2
0%
Низкий
3 месяца назад
github логотип
GHSA-g2cq-q859-8fm9

An issue was discovered in AnyDesk through 9.0.4. A remotely connected user with the "Control my device" permission can manipulate remote AnyDesk settings and create a password for the Full Access profile without needing confirmation from the counterparty. Consequently, the attacker can later connect without this counterparty confirmation.

CVSS3: 8.2
0%
Низкий
3 месяца назад
fstec логотип
BDU:2025-13994

Уязвимость программного обеспечения для удалённого доступа и управления AnyDesk, связанная с ошибками обработки разрешений, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

CVSS3: 8.2
0%
Низкий
3 месяца назад

Уязвимостей на страницу