Vulnerability Description
Improper Verification of Source of a Communication Channel in Work Desktop for Mac versions 10.8.1.46 and earlier allows attackers to execute arbitrary commands via unauthorized access to the Agent service. This has been remediated in Work Desktop for Mac version 10.8.2.33.
Related Weaknesses (CWE)
References
FAQ
What is CVE-2025-3651?
CVE-2025-3651 is a documented vulnerability. Improper Verification of Source of a Communication Channel in Work Desktop for Mac versions 10.8.1.46 and earlier allows attackers to execute arbitrary commands via unauthorized access to the Agent ...
How severe is CVE-2025-3651?
CVSS scoring is not yet available for CVE-2025-3651. Check NVD for updates.
Is there a patch for CVE-2025-3651?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.