Vulnerability Details CVE-2025-27919
An issue was discovered in AnyDesk through 9.0.4. A remotely connected user with the "Control my device" permission can manipulate remote AnyDesk settings and create a password for the Full Access profile without needing confirmation from the counterparty. Consequently, the attacker can later connect without this counterparty confirmation.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 3.5%
CVSS Severity
CVSS v3 Score 8.2
Products affected by CVE-2025-27919
-
cpe:2.3:a:anydesk:anydesk:-
-
cpe:2.3:a:anydesk:anydesk:5.4.2
-
cpe:2.3:a:anydesk:anydesk:6.0.8
-
cpe:2.3:a:anydesk:anydesk:6.1.0
-
cpe:2.3:a:anydesk:anydesk:6.2.6
-
cpe:2.3:a:anydesk:anydesk:6.3.1
-
cpe:2.3:a:anydesk:anydesk:6.3.2
-
cpe:2.3:a:anydesk:anydesk:6.3.3
-
cpe:2.3:a:anydesk:anydesk:6.3.5
-
cpe:2.3:a:anydesk:anydesk:7.0.0
-
cpe:2.3:a:anydesk:anydesk:7.0.1
-
cpe:2.3:a:anydesk:anydesk:7.0.10
-
cpe:2.3:a:anydesk:anydesk:7.0.13
-
cpe:2.3:a:anydesk:anydesk:7.0.14
-
cpe:2.3:a:anydesk:anydesk:7.0.2
-
cpe:2.3:a:anydesk:anydesk:7.0.3
-
cpe:2.3:a:anydesk:anydesk:7.0.4
-
cpe:2.3:a:anydesk:anydesk:7.0.5
-
cpe:2.3:a:anydesk:anydesk:7.0.6
-
cpe:2.3:a:anydesk:anydesk:7.0.7
-
cpe:2.3:a:anydesk:anydesk:7.0.8
-
cpe:2.3:a:anydesk:anydesk:7.0.9
-
cpe:2.3:a:anydesk:anydesk:7.1.0
-
cpe:2.3:a:anydesk:anydesk:7.1.1
-
cpe:2.3:a:anydesk:anydesk:7.1.10
-
cpe:2.3:a:anydesk:anydesk:7.1.11
-
cpe:2.3:a:anydesk:anydesk:7.1.12
-
cpe:2.3:a:anydesk:anydesk:7.1.13
-
cpe:2.3:a:anydesk:anydesk:7.1.16
-
cpe:2.3:a:anydesk:anydesk:7.1.2
-
cpe:2.3:a:anydesk:anydesk:7.1.3
-
cpe:2.3:a:anydesk:anydesk:7.1.4
-
cpe:2.3:a:anydesk:anydesk:7.1.5
-
cpe:2.3:a:anydesk:anydesk:7.1.6
-
cpe:2.3:a:anydesk:anydesk:7.1.7
-
cpe:2.3:a:anydesk:anydesk:7.1.8
-
cpe:2.3:a:anydesk:anydesk:7.1.9
-
cpe:2.3:a:anydesk:anydesk:8.0.0
-
cpe:2.3:a:anydesk:anydesk:8.0.1
-
cpe:2.3:a:anydesk:anydesk:8.0.10
-
cpe:2.3:a:anydesk:anydesk:8.0.11
-
cpe:2.3:a:anydesk:anydesk:8.0.12
-
cpe:2.3:a:anydesk:anydesk:8.0.13
-
cpe:2.3:a:anydesk:anydesk:8.0.14
-
cpe:2.3:a:anydesk:anydesk:8.0.2
-
cpe:2.3:a:anydesk:anydesk:8.0.3
-
cpe:2.3:a:anydesk:anydesk:8.0.4
-
cpe:2.3:a:anydesk:anydesk:8.0.5
-
cpe:2.3:a:anydesk:anydesk:8.0.6
-
cpe:2.3:a:anydesk:anydesk:8.0.8
-
cpe:2.3:a:anydesk:anydesk:8.0.9
-
cpe:2.3:a:anydesk:anydesk:8.1.0
-
cpe:2.3:a:anydesk:anydesk:9.0.0
-
cpe:2.3:a:anydesk:anydesk:9.0.1
-
cpe:2.3:a:anydesk:anydesk:9.0.2
-
cpe:2.3:a:anydesk:anydesk:9.0.3
-
cpe:2.3:a:anydesk:anydesk:9.0.4